CVE-2026-104659 | Progressive Robot hMailServer up to 6.3.5 REST API Listener dns rebinding

SecurityVulns

A vulnerability was found in Progressive Robot hMailServer up to 6.3.5. It has been rated as critical. Affected by this issue is some unknown functionality of the component REST API Listener. Performing a manipulation results in reliance on reverse dns resolution.

This vulnerability is reported as CVE-2026-104659. The attack is possible to be carried out remotely. No exploit exists.

Upgrading the affected component is advised.VulDB Recent EntriesRead More