A critical flaw in Active! Mail, a web-based email client from QUALITIA CO., LTD., is actively being exploited, putting school and enterprise mail servers at serious risk. Tracked as CVE-2025-42599, the vulnerability is caused by a stack-based buffer overflow, which could allow unauthenticated remote attackers to execute arbitrary code or crash systems via specially crafted requests. With confirmed exploitation underway, users are strongly urged to update to the latest version without delay to stay protected.
What’s new on HivePro
Get through updates and upcoming events, and more directly in your inbox