Vulnerabilities

Summary — last 7 days

New vulnerabilities2,823▼ 249 vs. last week
Critical / high1,318▼ 180 vs. last week
New active exploitation (KEV)8→ no change vs. last week
Unscored (no CVSS)214▼ 107 vs. last week
–

877 results, sorted by published date (most recent first)

CVEStatusSeverityEPSS Active exploitationAffected technologiesPublished ▼Modified Description
DeferredMedium (5.3)0.25%—Mailjet Email MarketingAI10/6/202610/6/2026
Unauthenticated Sensitive Data Exposure in Mailjet Email Marketing <= 6.2.3 versions.
DeferredMedium (4.3)0.25%—Omnisend Newsletters Email Marketing SMS AND PopupsAI9/30/20269/30/2026
Subscriber Insecure Direct Object References (IDOR) in Newsletters, Email Marketing, SMS and Popups by Omnisend <= 1.9.0 versions.
DeferredHigh (7.2)0.40%—Kadencewp Kadence Woocommerce Email DesignerAI9/30/20269/30/2026
Shop manager PHP Object Injection in Kadence WooCommerce Email Designer <= 1.5.19.1 versions.
Awaiting AnalysisHigh (8.2)0.25%—NodemailerAI9/26/20269/30/2026
Nodemailer before 10.0.2 fails to properly flatten deeply nested arrays in recipient fields such as to, cc, and bcc, allowing attackers to cause stack exhaustion. Attackers can supply a deeply nested JSON recipient array that triggers recursive Array.toString() conversion, exhausting the call stack and terminating the…
Awaiting AnalysisMedium (6)0.11%—NodemailerAI9/26/20269/30/2026
Nodemailer versions 5.0.0 through 10.0.1 use a process-global DNS cache that is keyed only by the DNS host, while each cache entry also stores the caller-specific TLS servername. When two direct TLS/SMTPS transports (secure: true) resolve the same non-IP host with different tls.servername values, the first transport's…
Awaiting AnalysisHigh (8.7)0.28%—NodemailerAI9/26/20269/30/2026
nodemailer before 10.0.6 contains a denial of service vulnerability in the addressparser free-text fallback regex pattern that exhibits quadratic backtracking behavior. Attackers can supply crafted email header values with long whitespace-free runs to block the Node.js event loop for tens of seconds, causing service…
Awaiting AnalysisMedium (6.9)0.19%—NodemailerAI9/26/20269/30/2026
Nodemailer is a Node.js email-sending library. In versions >= 9.1.0 and < 10.0.9, the address parser (src/addressparser) mishandles addresses whose local-part is a quoted string and that are followed by RFC 5322 comments, allowing trailing comment-separated domain atoms to be retained in the normalized address. For…
DeferredHigh (7.6)0.29%—Email LOGAI9/23/20269/23/2026
Administrator SQL Injection in Email Log <= 2.63 versions.
DeferredMedium (5.3)0.22%—Email SubscribersAI9/23/20269/23/2026
The Email Subscribers & Newsletters WordPress plugin before 5.9.35 does not verify the per-subscriber management token before changing a subscriber's subscription status, allowing unauthenticated users to force-unsubscribe or force-confirm an arbitrary subscriber whose email address they know.
DeferredCritical (9.8)0.60%—Perl Email-senderAI9/21/20269/22/2026
Email::Sender::Transport::Sendmail versions before 2.602 for Perl allow arbitrary command execution on Windows sending a message whose envelope address reaches the shell in _sendmail_pipe. On MSWin32 the envelope sender and every recipient go into a single command string, which open() passes to a shell. Every other…
DeferredCritical (9.8)0.32%—Maildata Email Archiving SystemAI9/17/20269/22/2026
In MailData Email Archiving System v4.2 and earlier, a SQL injection vulnerability exists.
DeferredLow (2.1)0.84%—Punchin-emailAICloudflare WorkersAI9/17/20269/30/2026
punchin-email is a Cloudflare Email Worker that provides two-way role aliases while relaying mail to a private inbox. Prior to 1.5.0, handleInbound delivers inbound alias mail with message.forward(), which silently drops the added Reply-To header intended to route responses through the relay. When a correspondent…
Awaiting AnalysisHigh (8.3)0.40%—NodemailerAI9/16/20269/22/2026
Nodemailer before 9.1.0 fails to apply UTS-46 normalization when encoding international domain names, causing the domain resolver to compute a different Punycode A-label than standards-compliant parsers. Attackers can craft recipient addresses with invisible characters or compatibility mappings that pass domain…
Awaiting AnalysisHigh (8.3)0.38%—NodemailerAI9/16/20269/22/2026
Nodemailer versions >= 6.9.16 and < 9.1.0 mis-parse RFC 5322 comments in email addresses: in lib/addressparser, a comment closed immediately before a non-break character causes the tokenizer to concatenate the atoms surrounding the comment instead of treating the comment as folding whitespace that terminates the…
Awaiting AnalysisHigh (8.7)0.82%—NodemailerAI9/16/20269/22/2026
Nodemailer before 9.1.0 contains a quadratic time complexity vulnerability in the addressparser component that allows remote attackers to cause denial of service by supplying a crafted comma-separated address list. Attackers can send a single email with a large number of addresses to block the Node.js event loop for…
Awaiting AnalysisMedium (6)0.29%—NodemailerAI9/16/20269/22/2026
Nodemailer (npm package `nodemailer`) versions 9.1.0 and earlier do not honor the `disableFileAccess` and `disableUrlAccess` sandbox options when message content is resolved through the public plugin API `MailMessage.resolveContent()` using the documented legacy three-argument signature `resolveContent(data, key,…
Awaiting AnalysisCritical (9.8)0.53%—Cisco Secure Email GatewayAICisco Secure Email AND WEB ManagerAI9/14/20269/15/2026
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Email Gateway and Cisco Secure Email and Web Manager engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple internally discovered…
Awaiting AnalysisHigh (7.5)0.47%—Cisco Secure Email GatewayAICisco Secure Email AND WEB ManagerAI9/14/20269/16/2026
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Email Gateway and Cisco Secure Email and Web Manager engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple internally discovered…
Awaiting AnalysisCritical (9.8)0.53%—Cisco Secure Email GatewayAICisco Secure Email AND WEB ManagerAI9/14/20269/15/2026
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Email Gateway and Cisco Secure Email and Web Manager engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple internally discovered…
Awaiting AnalysisCritical (9.8)0.62%—Cisco Secure Email GatewayAICisco Secure Email AND WEB ManagerAI9/14/20269/15/2026
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Email Gateway and Cisco Secure Email and Web Manager engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple internally discovered…
Awaiting AnalysisCritical (9.8)0.40%—Cisco Secure Email GatewayAICisco Secure Email AND WEB ManagerAI9/14/20269/15/2026
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Email Gateway and Cisco Secure Email and Web Manager engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple internally discovered…
DeferredMedium (6.9)0.76%—Simalexan Api-lambda-send-email-sesAI9/13/20269/14/2026
A flaw has been found in simalexan api-lambda-send-email-ses up to bda6869aa81371d1e872242e74fe7d953edb818d. This issue affects the function SES.sendEmail of the file template.yml of the component API Gateway Endpoint. This manipulation of the argument toEmails/ccEmails/replyToEmails/subject/message causes missing…
Awaiting AnalysisHigh (8.7)0.68%—NodemailerAI9/13/20269/24/2026
Nodemailer versions 9.1.0 through 10.0.4 contain a quadratic time complexity vulnerability in the addressparser component when parsing email addresses with RFC 5322 comments. Attackers can craft malicious email headers with comment-separated atoms to consume excessive CPU and block the Node.js event loop for several…
DeferredHigh (7.1)0.40%—Mailmunch Grow Your Email ListAI9/10/20269/10/2026
Subscriber Broken Authentication in MailMunch – Grow your Email List <= 3.2.5 versions.
Awaiting AnalysisCritical (9.9)0.86%💥 PoCCpanelAICpanel EmailtrackAI9/9/20269/10/2026
A vulnerability in cPanel allows a mail-enabled account to achieve remote code execution as root through SQLi in EmailTrack component