CVE-2026-66140
Basic Information
| Severity | HIGH |
|---|---|
| Base Score | 8.4 |
| CNA | mitre |
| Published Date | 2026-07-24 00:32:08 UTC |
| Last Modified | 2026-07-24 00:32:08 UTC |
| CVE.org Link | https://www.cve.org/CVERecord?id=CVE-2026-66140 |
| NVD | https://nvd.nist.gov/vuln/detail/CVE-2026-66140 |
Description
Exim before 4.99.5 allows directory traversal to access files outside of the spool area, and consequently gain privileges, because arguments related to queue-name are mishandled.
Affected Products
| Vendor | Product |
|---|---|
| exim | exim |