Vendor
Sangoma
FreePBX Switchvox Switchvox SMB Edition
Tracked CVEs
Coverage timeline
-
CISA KEV Missed Four Actively Exploited AI and WordPress Flawssecurityonline.info · Sep 7, 2026
-
Hackers Exploit Sangoma Switchvox Flaw for Remote Code Executionwww.securityweek.com · Sep 4, 2026
-
CVE-2026-9586: Switchvox RCE Exploited in the Wildsecurityonline.info · Sep 1, 2026
-
FreePBX Attackers Deploy JOMANGY Malware for Toll Fraud via CVEssecurityonline.info · May 27, 2026
-
FreePBX CVE-2025-64328 enables postauth commands EncystPHP shellssecurityaffairs.com · Mar 1, 2026
-
CVE-2025-64328 fuels 900 FreePBX infections via EncystPHPthehackernews.com · Feb 27, 2026
-
900 FreePBX servers hit after CVE-2025-64328 postauth shellwww.securityweek.com · Feb 27, 2026
-
Fresh SolarWinds Vulnerability Exploited in Attackswww.securityweek.com · Feb 4, 2026
-
U.S. CISA adds SolarWinds Web Help Desk, Sangoma FreePBX, and GitLab flaws to its Known Exploited Vulnerabilities catalogsecurityaffairs.com · Feb 3, 2026
-
Silent Intruder: “EncystPHP” Web Shell Burrows into FreePBX Systemssecurityonline.info · Feb 2, 2026