We would like to inform you that our previous patch v10.3.4.0 did not fully address the following security vulnerabilities:
CVE-2026-105133
CVE-2026-105134
Given the severity of these risks, we strongly urge you to take immediate action to secure your environment and protect your customers data.
Partners running affected v10 versions should apply the AhsayCBS v10.3.4.45 hotfix, available at: https://www.ahsay.com/en/hotfix-v10-partner-only (A valid partner portal login account is required)
After applying the hotfix, please reboot your server.