Key Facts
Horizon3 reported active exploitation of CVE-2026-9586 in Sangoma Switchvox. The NVD record describes an unauthenticated SQL-injection flaw with a 9.3 CVSS score.
Technical Details
According to SecurityWeek’s report on the vendor and research disclosures, the vulnerable endpoint processes XML content and allows attacker-controlled input to reach PostgreSQL queries; the issue can lead to arbitrary code execution.
Impact & Mitigation
CISA added CVE-2026-9586 to its Known Exploited Vulnerabilities Catalog. Apply Sangoma’s available remediation, restrict management exposure, and investigate using the published indicators.
