CISA Warns: PaperCut Vulnerabilities Now Under Active Attack
The Cybersecurity and Infrastructure Security Agency (CISA) has added two vulnerabilities affecting PaperCut software—CVE-2026-82078 and CVE-2026-81578—to its Known Exploited Vulnerabilities (KEV) catalog. This confirms that attackers are actively using these flaws to break into systems, rather than these being theoretical risks.
PaperCut is widely used print management software found in many businesses, schools, and government agencies worldwide, including in Australia. Previous PaperCut vulnerabilities have been exploited by ransomware groups to gain initial access to networks, so this latest escalation to active intrusions should be treated as a serious warning sign for any organisation running the software.
Being listed in CISA's KEV catalog means the vulnerabilities meet a high bar of confirmed real-world exploitation, and US federal agencies are required to patch such flaws within set deadlines. While this requirement doesn't apply to Australian businesses, it signals that attackers already have working exploits and are using them against real targets right now.