This might have slipped under the radar these past few days, but a 9.8 RCE in Exim (on many, many mail servers) that does not require authentication is bad bad bad.

https://www.zerodayinitiative.com/advisories/ZDI-23-1469/

@briankrebs For an authenticator plugin that is not built/installed on 99% of those many, many servers.
@QuatermassTools @briankrebs Where do you find that detail it's for the auth plugin?