CVE-2026-47086: Low severity Cyrus IMAP cyrus-imapd vulnerability
An issue was discovered in cyrus-imapd in Cyrus IMAP through 3.12.2. GENURLAUTH-issued tokens can bypass ACLs. Any authenticated user could mint a URLAUTH token (via the GENURLAUTH command) for any mailbox they could name, even without read access on it. This would allow reading mail from mailboxes despite having no granted permissions.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-47086?
The severity of CVE-2026-47086 is rated low, with a score of 3.5.
How do I fix CVE-2026-47086?
To fix CVE-2026-47086, upgrade to a version of Cyrus IMAP that addresses this vulnerability.
What is the impact of CVE-2026-47086?
The impact of CVE-2026-47086 allows authenticated users to read mail from mailboxes without proper access controls.
Who is affected by CVE-2026-47086?
Users and administrators running affected versions of Cyrus IMAP prior to 3.12.3 are impacted by CVE-2026-47086.
What systems are at risk with CVE-2026-47086?
Cyrus IMAP versions up to 3.12.2 are at risk of exploitation under CVE-2026-47086.