Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-44742

Опубликовано: 07 мая 2026
Источник: nvd
CVSS3: 7.2
CVSS3: 6.1
EPSS Низкий

Описание

Postorius through 1.3.13 does not escape HTML in the message subject when rendering it in the Held messages pop-up, as exploited in the wild in May 2026.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:postorius_project:postorius:*:*:*:*:*:*:*:*
Версия до 1.3.13 (включая)

EPSS

Процентиль: 15%
0.00237
Низкий

7.2 High

CVSS3

6.1 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 7.2
ubuntu
3 месяца назад

Postorius through 1.3.13 does not escape HTML in the message subject when rendering it in the Held messages pop-up, as exploited in the wild in May 2026.

CVSS3: 7.2
debian
3 месяца назад

Postorius through 1.3.13 does not escape HTML in the message subject w ...

CVSS3: 7.2
github
3 месяца назад

Postorius is vulnerable to XSS

EPSS

Процентиль: 15%
0.00237
Низкий

7.2 High

CVSS3

6.1 Medium

CVSS3

Дефекты

CWE-79