๐ฅ This vulnerability is being actively exploited in the wild (CISA Known Exploited Vulnerabilities catalog)
CVE-2026-72529: TrueConf Server Missing Authentication for Critical Function Vulnerability
infovulnerability๐ฅ Actively Exploited
security
Summary
TrueConf Server has a missing authentication for critical function vulnerability, which means an attacker on the network can access port 4307/TCP without logging in and run arbitrary scripts (code of their choosing) on the server. This vulnerability is currently being exploited by attackers in the wild.
Vulnerability Details
EPSS (30-day exploit probability)
EPSS: 0.3%
Patch Available
Yes
Exploit Maturity
๐ฅ Actively Exploited
Disclosure Date
August 19, 2026
Classification
Attack SophisticationTrivial
Monthly digest โ independent AI security research
Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-72529
First tracked: August 20, 2026 at 02:01 PM
Classified by LLM (prompt v3) ยท confidence: 95%