📦

sylpheed

Vendor: sylpheed_project

Actively Exploited 0 CISA KEV List
PoC / Exploits 0 Code Available
Total RCEs 0 Remote Access
Total CVEs 18 Total Indexed
Avg. EPSS 0.51% Exploit Prob.
Latest CVE CVE-2021-37746 Jul 30

Security Vulnerability Index

Page 1 / 2
6.1 CVSS

textview_uri_security_check in textview.c in Claws Mail before 3.18.0, and Sylpheed through 3.7.0, does not have sufficient link checks before accepting a click.

EPSS: 0.48%
8.8 CVSS

libsylph/utils.c in Sylpheed through 3.6 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remote attackers to conduct argument-injection attacks via a crafted URL.

EPSS: 0.55%