CVE-2026-24423 is a vulnerability tracked across 2 threat clusters and 7 intelligence report mentions on ThreatCluster. First observed January 30, 2026; most recent activity February 10, 2026.
A critical vulnerability in SmarterTools' SmarterMail, identified as CVE-2026-24423, is being actively exploited in ransomware attacks. The flaw allows unauthenticated remote code execution via malicious HTTP requests,…
SmarterMail has patched a critical unauthenticated remote code execution (RCE) vulnerability, identified as CVE-2026-24423, with a CVSS score of 9.3. This flaw allows attackers to execute operating system commands…