www.cisa.gov 8/21/2026, 2:03:31 AM · external

CVE-2026-72529 exposes TrueConf Server auth bypass on port 4307

Developing story vulnerability 5 articles tracked
CVE-2026-72529 exposes TrueConf Server auth bypass on port 4307
CyberSIXT Evidence Panel
Primary Source trueconf.com
CISA KEV Listed in KEV
Patch Patch Status Unknown

THE Known Exploited Vulnerabilities (KEV) Catalog, maintained by CISA, serves as an authoritative resource to assist organizations in managing vulnerabilities and addressing cybersecurity threats. The catalog includes details on vulnerabilities exploited in the wild and encourages organizations to integrate it into their vulnerability management frameworks.

A recent entry, CVE-2026-72529, pertains to TrueConf Server, which has a critical authentication vulnerability allowing unauthorized remote access via TCP port 4307. Users are advised to implement vendor mitigations and follow CISA's guidance on security updates. The catalog can be accessed in various formats, including CSV and JSON.

View Primary Source Via www.cisa.gov

Article by CyberSIXT

Timeline Coverage

Swipe to explore timeline