Vulnerabilities (CVE)

Filtered by vendor Claws-mail Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2014-2576 2 Claws-mail, Opensuse 2 Claws-mail, Opensuse 2018-10-30 6.8 MEDIUM N/A
plugins/rssyl/feed.c in Claws Mail before 3.10.0 disables the CURLOPT_SSL_VERIFYHOST check for CN or SAN host name fields, which makes it easier for remote attackers to spoof servers and conduct man-in-the-middle (MITM) attacks.
CVE-2012-4507 1 Claws-mail 1 Claws-mail 2013-03-01 5.0 MEDIUM N/A
The strchr function in procmime.c in Claws Mail (aka claws-mail) 3.8.1 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a crafted email.