Products: 8
Vulnerabilities: 77
Known Exploited: 0
4
Critical Level Threats
18
High Level Threats
53
Medium Level Threats
2
Low Level Threats
Vulnerabilities
100806040200
JanFebMarAprMayJunJulAugSepOctNovDec
Critical Level Threats
High Level Threats
Medium Level Threats
Low Level Threats
Products Security index
Actions
Items Per Page
Vulnerabilities
CVE-2025-30090
mime.php in SquirrelMail through 1.4.23-svn-20250401 and 1.5.x through 1.5.2-svn-20250401 allows XSS via e-mail headers, because JavaScript payloads are mishandled after $encoded has been set to true.
Last Modified: Apr 15, 2026
Published: Apr 02, 2025
CVE-2020-14933
squirrelmail: use of unserialize function for the attachments value in compose.php
Last Modified: Nov 21, 2024
Published: Jun 20, 2020
CVE-2020-14932
squirrelmail: use of unserialize function for the mailtodata value in compose.php
Last Modified: Nov 21, 2024
Published: Jun 20, 2020
CVE-2012-5623
Squirrelmail 4.0 uses the outdated MD5 hash algorithm for passwords.
Last Modified: Nov 21, 2024
Published: Feb 13, 2020
CVE-2019-12970
squirrelmail: improper handling of RCDATA and RAWTEXT type elements causing XSS
Last Modified: Nov 21, 2024
Published: Jul 01, 2019
Items Per Page
