Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r7c9-7pjq-hmm8

Опубликовано: 07 мая 2026
Источник: github
Github: Прошло ревью
CVSS3: 7.2

Описание

Postorius is vulnerable to XSS

Postorius through 1.3.13 does not escape HTML in the message subject when rendering it in the Held messages pop-up, as exploited in the wild in May 2026.

Пакеты

Наименование

postorius

pip
Затронутые версииВерсия исправления

<= 1.3.13

Отсутствует

EPSS

Процентиль: 15%
0.00237
Низкий

7.2 High

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 7.2
ubuntu
3 месяца назад

Postorius through 1.3.13 does not escape HTML in the message subject when rendering it in the Held messages pop-up, as exploited in the wild in May 2026.

CVSS3: 7.2
nvd
3 месяца назад

Postorius through 1.3.13 does not escape HTML in the message subject when rendering it in the Held messages pop-up, as exploited in the wild in May 2026.

CVSS3: 7.2
debian
3 месяца назад

Postorius through 1.3.13 does not escape HTML in the message subject w ...

EPSS

Процентиль: 15%
0.00237
Низкий

7.2 High

CVSS3

Дефекты

CWE-79