# A security update (6.3.3) of the CipherMail gateway is available

**URL:** https://community.ciphermail.com/t/a-security-update-6-3-3-of-the-ciphermail-gateway-is-available/1057
**Category:** General
**Created:** [June 10, 2026, 9:07am UTC](https://community.ciphermail.com/t/a-security-update-6-3-3-of-the-ciphermail-gateway-is-available/1057 "2026-06-10T09:07:35Z")
**Posts on this page:** 1
**Page:** 1

<div class="post-metadata">

### Author: ![martijn](https://dub1.discourse-cdn.com/flex017/user_avatar/community.ciphermail.com/martijn/32/127_2.png) [@martijn](https://community.ciphermail.com/u/martijn)
#### Post date: [June 10, 2026, 9:07am UTC](https://community.ciphermail.com/t/a-security-update-6-3-3-of-the-ciphermail-gateway-is-available/1057/1 "2026-06-10T09:07:35Z")

</div>

We recently received a detailed report from the **Applied Cryptography Research Group at ETH Zurich** describing several ways the CipherMail Gateway could be made to leak information about, or misrepresent the trust status of, the encrypted email it processes.

The vulnerabilities are related to S/MIME and PGP decryption.

For more information, see [Five vulnerabilities in CipherMail Gateway: EFAIL revisited, a bounce oracle, and trust-tag spoofing - CipherMail Email Encryption](https://www.ciphermail.com/blog/ciphermail-efail-family-vulnerabilities-2026.html)

Users of the Enterprise/Pro edition can update directly (with **dnf update** from the command line).

Users of the Community edition can download the update from the Gitlab community page [Releases · CipherMail B.V. / ciphermail-community-gateway · GitLab](https://gitlab.com/ciphermail/ciphermail-community-gateway/-/releases)
