Vulnerabilities
Summary — last 7 days
New vulnerabilities2,823▼ 249 vs. last week
Critical / high1,318▼ 180 vs. last week
New active exploitation (KEV)8→ no change vs. last week
Unscored (no CVSS)214▼ 107 vs. last week
877 results, sorted by published date (most recent first)
| CVE | Status | Severity | EPSS | Active exploitation | Affected technologies | Published ▼ | Modified | Description |
|---|---|---|---|---|---|---|---|---|
| Deferred | Medium (5.3) | 0.25% | — | Mailjet Email MarketingAI | 10/6/2026 | 10/6/2026 | Unauthenticated Sensitive Data Exposure in Mailjet Email Marketing <= 6.2.3 versions. | |
| Deferred | Medium (4.3) | 0.25% | — | Omnisend Newsletters Email Marketing SMS AND PopupsAI | 9/30/2026 | 9/30/2026 | Subscriber Insecure Direct Object References (IDOR) in Newsletters, Email Marketing, SMS and Popups by Omnisend <= 1.9.0 versions. | |
| Deferred | High (7.2) | 0.40% | — | Kadencewp Kadence Woocommerce Email DesignerAI | 9/30/2026 | 9/30/2026 | Shop manager PHP Object Injection in Kadence WooCommerce Email Designer <= 1.5.19.1 versions. | |
| Awaiting Analysis | High (8.2) | 0.25% | — | NodemailerAI | 9/26/2026 | 9/30/2026 | Nodemailer before 10.0.2 fails to properly flatten deeply nested arrays in recipient fields such as to, cc, and bcc, allowing attackers to cause stack exhaustion. Attackers can supply a deeply nested JSON recipient array that triggers recursive Array.toString() conversion, exhausting the call stack and terminating the… | |
| Awaiting Analysis | Medium (6) | 0.11% | — | NodemailerAI | 9/26/2026 | 9/30/2026 | Nodemailer versions 5.0.0 through 10.0.1 use a process-global DNS cache that is keyed only by the DNS host, while each cache entry also stores the caller-specific TLS servername. When two direct TLS/SMTPS transports (secure: true) resolve the same non-IP host with different tls.servername values, the first transport's… | |
| Awaiting Analysis | High (8.7) | 0.28% | — | NodemailerAI | 9/26/2026 | 9/30/2026 | nodemailer before 10.0.6 contains a denial of service vulnerability in the addressparser free-text fallback regex pattern that exhibits quadratic backtracking behavior. Attackers can supply crafted email header values with long whitespace-free runs to block the Node.js event loop for tens of seconds, causing service… | |
| Awaiting Analysis | Medium (6.9) | 0.19% | — | NodemailerAI | 9/26/2026 | 9/30/2026 | Nodemailer is a Node.js email-sending library. In versions >= 9.1.0 and < 10.0.9, the address parser (src/addressparser) mishandles addresses whose local-part is a quoted string and that are followed by RFC 5322 comments, allowing trailing comment-separated domain atoms to be retained in the normalized address. For… | |
| Deferred | High (7.6) | 0.29% | — | Email LOGAI | 9/23/2026 | 9/23/2026 | Administrator SQL Injection in Email Log <= 2.63 versions. | |
| Deferred | Medium (5.3) | 0.22% | — | Email SubscribersAI | 9/23/2026 | 9/23/2026 | The Email Subscribers & Newsletters WordPress plugin before 5.9.35 does not verify the per-subscriber management token before changing a subscriber's subscription status, allowing unauthenticated users to force-unsubscribe or force-confirm an arbitrary subscriber whose email address they know. | |
| Deferred | Critical (9.8) | 0.60% | — | Perl Email-senderAI | 9/21/2026 | 9/22/2026 | Email::Sender::Transport::Sendmail versions before 2.602 for Perl allow arbitrary command execution on Windows sending a message whose envelope address reaches the shell in _sendmail_pipe. On MSWin32 the envelope sender and every recipient go into a single command string, which open() passes to a shell. Every other… | |
| Deferred | Critical (9.8) | 0.32% | — | Maildata Email Archiving SystemAI | 9/17/2026 | 9/22/2026 | In MailData Email Archiving System v4.2 and earlier, a SQL injection vulnerability exists. | |
| Deferred | Low (2.1) | 0.84% | — | Punchin-emailAICloudflare WorkersAI | 9/17/2026 | 9/30/2026 | punchin-email is a Cloudflare Email Worker that provides two-way role aliases while relaying mail to a private inbox. Prior to 1.5.0, handleInbound delivers inbound alias mail with message.forward(), which silently drops the added Reply-To header intended to route responses through the relay. When a correspondent… | |
| Awaiting Analysis | High (8.3) | 0.40% | — | NodemailerAI | 9/16/2026 | 9/22/2026 | Nodemailer before 9.1.0 fails to apply UTS-46 normalization when encoding international domain names, causing the domain resolver to compute a different Punycode A-label than standards-compliant parsers. Attackers can craft recipient addresses with invisible characters or compatibility mappings that pass domain… | |
| Awaiting Analysis | High (8.3) | 0.38% | — | NodemailerAI | 9/16/2026 | 9/22/2026 | Nodemailer versions >= 6.9.16 and < 9.1.0 mis-parse RFC 5322 comments in email addresses: in lib/addressparser, a comment closed immediately before a non-break character causes the tokenizer to concatenate the atoms surrounding the comment instead of treating the comment as folding whitespace that terminates the… | |
| Awaiting Analysis | High (8.7) | 0.82% | — | NodemailerAI | 9/16/2026 | 9/22/2026 | Nodemailer before 9.1.0 contains a quadratic time complexity vulnerability in the addressparser component that allows remote attackers to cause denial of service by supplying a crafted comma-separated address list. Attackers can send a single email with a large number of addresses to block the Node.js event loop for… | |
| Awaiting Analysis | Medium (6) | 0.29% | — | NodemailerAI | 9/16/2026 | 9/22/2026 | Nodemailer (npm package `nodemailer`) versions 9.1.0 and earlier do not honor the `disableFileAccess` and `disableUrlAccess` sandbox options when message content is resolved through the public plugin API `MailMessage.resolveContent()` using the documented legacy three-argument signature `resolveContent(data, key,… | |
| Awaiting Analysis | Critical (9.8) | 0.53% | — | Cisco Secure Email GatewayAICisco Secure Email AND WEB ManagerAI | 9/14/2026 | 9/15/2026 | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Email Gateway and Cisco Secure Email and Web Manager engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple internally discovered… | |
| Awaiting Analysis | High (7.5) | 0.47% | — | Cisco Secure Email GatewayAICisco Secure Email AND WEB ManagerAI | 9/14/2026 | 9/16/2026 | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Email Gateway and Cisco Secure Email and Web Manager engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple internally discovered… | |
| Awaiting Analysis | Critical (9.8) | 0.53% | — | Cisco Secure Email GatewayAICisco Secure Email AND WEB ManagerAI | 9/14/2026 | 9/15/2026 | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Email Gateway and Cisco Secure Email and Web Manager engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple internally discovered… | |
| Awaiting Analysis | Critical (9.8) | 0.62% | — | Cisco Secure Email GatewayAICisco Secure Email AND WEB ManagerAI | 9/14/2026 | 9/15/2026 | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Email Gateway and Cisco Secure Email and Web Manager engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple internally discovered… | |
| Awaiting Analysis | Critical (9.8) | 0.40% | — | Cisco Secure Email GatewayAICisco Secure Email AND WEB ManagerAI | 9/14/2026 | 9/15/2026 | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Email Gateway and Cisco Secure Email and Web Manager engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple internally discovered… | |
| Deferred | Medium (6.9) | 0.76% | — | Simalexan Api-lambda-send-email-sesAI | 9/13/2026 | 9/14/2026 | A flaw has been found in simalexan api-lambda-send-email-ses up to bda6869aa81371d1e872242e74fe7d953edb818d. This issue affects the function SES.sendEmail of the file template.yml of the component API Gateway Endpoint. This manipulation of the argument toEmails/ccEmails/replyToEmails/subject/message causes missing… | |
| Awaiting Analysis | High (8.7) | 0.68% | — | NodemailerAI | 9/13/2026 | 9/24/2026 | Nodemailer versions 9.1.0 through 10.0.4 contain a quadratic time complexity vulnerability in the addressparser component when parsing email addresses with RFC 5322 comments. Attackers can craft malicious email headers with comment-separated atoms to consume excessive CPU and block the Node.js event loop for several… | |
| Deferred | High (7.1) | 0.40% | — | Mailmunch Grow Your Email ListAI | 9/10/2026 | 9/10/2026 | Subscriber Broken Authentication in MailMunch – Grow your Email List <= 3.2.5 versions. | |
| Awaiting Analysis | Critical (9.9) | 0.86% | 💥 PoC | CpanelAICpanel EmailtrackAI | 9/9/2026 | 9/10/2026 | A vulnerability in cPanel allows a mail-enabled account to achieve remote code execution as root through SQLi in EmailTrack component |