Information notices
Information Notice about vulnerabilities and fixes in SEPPmail Appliances
- A number of vulnerabilities have been reported through SEPPmails Responsible Disclosure process, and subsequently reported to the swiss National Center for Cybersecurity (NCSC).
- The critical issues reported have been fixed in appliance release 15.0.1.
- In seppmail.cloud, the critical issues have been patched in November 2025, and some findings with lower severity have been deployed in seppmail.cloud in line with...
A new SEPPmail Appliance hotfix release has been published that updates OpenSSL to version 3.0.19 and addresses multiple security findings:
- CVE-2025-15467
- CVE-2025-68160
- CVE-2025-69418
- CVE-2025-69419
- CVE-2025-69420
- CVE-2025-69421
- CVE-2026-22795
- CVE-2026-22796
Scheduled maintenances
Update of all appliance systems in DE instance.
No outage is expected, but some delay in sending and receiving e-mails may be possible. Short disruption of our cloud portal may also happen, please try again a couple of minutes later in that case.
Update of all appliance systems in CH instance.
No outage is expected, but some delay in sending and receiving e-mails may be possible. Short disruption of our cloud portal may also happen, please try again a couple of minutes later in that case.
Past Incidents
We are including a new data centre location in the cluster. This will improve redundancy and performance in the future.
No outage is expected, but some delay in sending and receiving e-mails may be possible.
After an extended monitoring period, we see that all customer GINA domains are fully functional again.
The root cause of the issue was that an internal operation to refresh all customer GINA domains was aborted during execution. After the refresh was restarted, the affected GINA domains were working again.
We are reviewing the cause of the aborted execution and will implement measures to avoid the impact of such a situation.
After intensive monitoring over the past 36 hours, the issue is declared resolved.