CVE-2026-66140

Basic Information

Severity HIGH
Base Score 8.4
CNA mitre
Published Date 2026-07-24 00:32:08 UTC
Last Modified 2026-07-24 00:32:08 UTC
CVE.org Link https://www.cve.org/CVERecord?id=CVE-2026-66140
NVD https://nvd.nist.gov/vuln/detail/CVE-2026-66140

Description

Exim before 4.99.5 allows directory traversal to access files outside of the spool area, and consequently gain privileges, because arguments related to queue-name are mishandled.

Affected Products

Vendor Product
exim exim