The Dutch Institute for Vulnerability Disclosure (DIVD) has confirmed that a breach of its network was made possible by exploiting two zero-day vulnerabilities in the open-source Zammad ticketing platform. The flaws, tracked as CVE-2026-102489 and CVE-2026-102490, enabled attackers to hijack sessions, execute code remotely, and escalate privileges from the Zammad user to root.
DIVD previously described the attack as “loud and very, very messy,” driven by an AI agent that moved autonomously and determined its next steps without human intervention. The organization was able to reconstruct the incident in detail because the AI agent left behind clear explanations of its decisions.
According to DIVD, the two vulnerabilities were used together, allowing the attacker to access other services, read and exfiltrate data in a matter of seconds. However, due to network segmentation and incident response actions, the threat actor did not move deeper into the network. The investigation remains ongoing.
DIVD discovered the zero-days in collaboration with Merlon Security and notified Zammad, the open-source AI-powered helpdesk and support ticketing platform. Zammad claims on its website to serve over 2,000 customers and 55,000 users, including De’Longhi, Amnesty International, and NextCloud.
DIVD recommends that Zammad users upgrade to version 7, which is considered safe, or take their instances offline as soon as possible. The organization has promised to share additional updates about the incident tomorrow.