Описание
Postorius through 1.3.13 does not escape HTML in the message subject when rendering it in the Held messages pop-up, as exploited in the wild in May 2026.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | needed | |
| esm-apps/bionic | released | 1.1.2-3ubuntu0.1+esm1 |
| esm-apps/focal | released | 1.2.4-1ubuntu0.1+esm1 |
| esm-apps/jammy | released | 1.3.5-1ubuntu0.1~esm1 |
| esm-apps/noble | released | 1.3.10-1ubuntu0.1~esm1 |
| esm-apps/resolute | released | 1.3.13-1ubuntu1.1~26.04.1 |
| jammy | needed | |
| noble | needed | |
| questing | released | 1.3.13-1ubuntu1.1~25.10.1 |
| resolute | released | 1.3.13-1ubuntu1.1~26.04.1 |
Показывать по
10
EPSS
Процентиль: 15%
0.00237
Низкий
7.2 High
CVSS3
Связанные уязвимости
CVSS3: 7.2
nvd
3 месяца назад
Postorius through 1.3.13 does not escape HTML in the message subject when rendering it in the Held messages pop-up, as exploited in the wild in May 2026.
CVSS3: 7.2
debian
3 месяца назад
Postorius through 1.3.13 does not escape HTML in the message subject w ...
EPSS
Процентиль: 15%
0.00237
Низкий
7.2 High
CVSS3