Sangoma Switchvox Vulnerabilities Exploited in the Wild
highDetails
An unauthenticated SQL injection vulnerability, tracked as CVE-2026-9586, is being actively exploited in Sangoma Switchvox systems. The flaw allows a remote, unauthenticated attacker to achieve arbitrary code execution on the target system.
Affected Systems
Sangoma Switchvox
Potential Impact
Complete takeover of the affected Switchvox private branch exchange (PBX) system, leading to unauthorized access, data exfiltration, service disruption, and potential lateral movement into the broader corporate network.
Mitigations
Immediately apply patches provided by Sangoma. As this vulnerability is listed on the CISA KEV catalog, it is a known exploited threat. All organizations using Sangoma Switchvox are strongly advised to patch immediately.