Back

CRITICAL

Email Sending Vulnerability in BLUVOYIX

Published Jan 14, 2026

Description

The vulnerability exists in BLUVOYIX due to design flaws in the email sending API. An unauthenticated remote attacker could exploit this vulnerability by sending specially crafted HTTP requests to the vulnerable email sending API. Successful exploitation of this vulnerability could allow the attacker to send unsolicited emails to anyone on behalf of the company.

Affected products

Remediation

No remediation recorded yet.

References (1)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner MHV
Published Jan 14, 2026
Updated Jan 14, 2026
Reserved Jan 6, 2026
CISA Vulnrichment
Updated Jan 14, 2026
NVD
Status Analyzed
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a