neomutt records
21 published records for vendor neomutt.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 2
- With a fix record
- 95.2%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-787 Out-of-bounds Write4
- CWE-20 Improper Input Validation3
- CWE-347 Improper Verification of Cryptographic Signature2
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')2
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')2
- CWE-287 Improper Authentication1
The weakness classes this vendor ships most often: where to look.
CWEAll records
21 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
41Plan | CVE-2018-14354No exploit | An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16.mutt · mutt · CWE-78 | Critical9.8 | — | 6.2% | Jul 17, 2018 |
40Plan | CVE-2018-14350No exploit | An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16.mutt · mutt · CWE-787 | Critical9.8 | — | 5.0% | Jul 17, 2018 |
40Plan | CVE-2018-14357No exploit | An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16.mutt · mutt · CWE-78 | Critical9.8 | — | 5.0% | Jul 17, 2018 |
40Plan | CVE-2018-14359No exploit | An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16.mutt · mutt · CWE-120 | Critical9.8 | — | 4.1% | Jul 17, 2018 |
40Plan | CVE-2018-14352No exploit | An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16.mutt · mutt · CWE-787 | Critical9.8 | — | 4.0% | Jul 17, 2018 |
40Plan | CVE-2018-14358No exploit | An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16.mutt · mutt · CWE-787 | Critical9.8 | — | 3.9% | Jul 17, 2018 |
40Plan | CVE-2018-14353No exploit | An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16.mutt · mutt · CWE-191 | Critical9.8 | — | 3.7% | Jul 17, 2018 |
40Plan | CVE-2018-14362No exploit | An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16.mutt · mutt · CWE-119 | Critical9.8 | — | 3.7% | Jul 17, 2018 |
40Plan | CVE-2018-14349No exploit | An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16.mutt · mutt · CWE-20 | Critical9.8 | — | 3.2% | Jul 17, 2018 |
40Plan | CVE-2018-14351No exploit | An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16.mutt · mutt · CWE-20 | Critical9.8 | — | 3.2% | Jul 17, 2018 |
40Plan | CVE-2018-14356No exploit | An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16.mutt · mutt · CWE-824 | Critical9.8 | — | 3.2% | Jul 17, 2018 |
40Plan | CVE-2018-14360No exploit | An issue was discovered in NeoMutt before 2018-07-16.neomutt · neomutt · CWE-787 | Critical9.8 | — | 2.7% | Jul 17, 2018 |
40Plan | CVE-2018-14361No exploit | An issue was discovered in NeoMutt before 2018-07-16.neomutt · neomutt · CWE-20 | Critical9.8 | — | 2.5% | Jul 17, 2018 |
37Monitor | CVE-2021-32055No exploit | Mutt 1.11.0 through 2.0.x before 2.0.7 (and NeoMutt 2019-10-25 through 2021-05-04) has a $imap_qresync issue in which imap/util.c has an outmutt · mutt · CWE-125 | Critical9.1 | — | 2.6% | May 5, 2021 |
31Monitor | CVE-2018-14363No exploit | An issue was discovered in NeoMutt before 2018-07-16.neomutt · neomutt · CWE-22 | High7.5 | — | 2.2% | Jul 17, 2018 |
26Monitor | CVE-2024-49393No exploit | Mutt: neomutt: to and cc email header fields are not protected by cryptographic signingmutt · mutt · CWE-347 | Medium6.5 | — | 0.3% | Nov 11, 2024 |
24Monitor | CVE-2020-14954No exploit | Mutt before 1.14.4 and NeoMutt before 2020-06-19 have a STARTTLS buffering issue that affects IMAP, SMTP, and POP3.mutt · mutt · CWE-74 | Medium5.9 | — | 2.3% | Jun 21, 2020 |
22Monitor | CVE-2018-14355No exploit | An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16.mutt · mutt · CWE-22 | Medium5.3 | — | 3.3% | Jul 17, 2018 |
22Monitor | CVE-2020-28896No exploit | Mutt before 2.0.2 and NeoMutt before 2020-11-20 did not ensure that $ssl_force_tls was processed if an IMAP server's initial server responsemutt · mutt · CWE-287 | Medium5.3 | — | 2.4% | Nov 23, 2020 |
21Monitor | CVE-2024-49394No exploit | Mutt: neomutt: in-reply-to email header field it not protected by cryptograpic signingmutt · mutt · CWE-347 | Medium5.3 | — | 0.3% | Nov 11, 2024 |
21Monitor | CVE-2024-49395No exploit | Mutt: neomutt: bcc email header field is indirectly leaked by cryptographic info blockmutt · mutt · CWE-1230 | Medium5.3 | — | 0.3% | Nov 11, 2024 |
- CVE-2018-1435441Plan
An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16.
CriticalCVSS 9.8No exploitEPSS 6%mutt · muttJul 17, 2018
- CVE-2018-1435040Plan
An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16.
CriticalCVSS 9.8No exploitEPSS 5%mutt · muttJul 17, 2018
- CVE-2018-1435740Plan
An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16.
CriticalCVSS 9.8No exploitEPSS 5%mutt · muttJul 17, 2018
- CVE-2018-1435940Plan
An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16.
CriticalCVSS 9.8No exploitEPSS 4%mutt · muttJul 17, 2018
- CVE-2018-1435240Plan
An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16.
CriticalCVSS 9.8No exploitEPSS 4%mutt · muttJul 17, 2018
- CVE-2018-1435840Plan
An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16.
CriticalCVSS 9.8No exploitEPSS 4%mutt · muttJul 17, 2018
- CVE-2018-1435340Plan
An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16.
CriticalCVSS 9.8No exploitEPSS 4%mutt · muttJul 17, 2018
- CVE-2018-1436240Plan
An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16.
CriticalCVSS 9.8No exploitEPSS 4%mutt · muttJul 17, 2018
- CVE-2018-1434940Plan
An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16.
CriticalCVSS 9.8No exploitEPSS 3%mutt · muttJul 17, 2018
- CVE-2018-1435140Plan
An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16.
CriticalCVSS 9.8No exploitEPSS 3%mutt · muttJul 17, 2018
- CVE-2018-1435640Plan
An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16.
CriticalCVSS 9.8No exploitEPSS 3%mutt · muttJul 17, 2018
- CVE-2018-1436040Plan
An issue was discovered in NeoMutt before 2018-07-16.
CriticalCVSS 9.8No exploitEPSS 3%neomutt · neomuttJul 17, 2018
- CVE-2018-1436140Plan
An issue was discovered in NeoMutt before 2018-07-16.
CriticalCVSS 9.8No exploitEPSS 3%neomutt · neomuttJul 17, 2018
- CVE-2021-3205537Monitor
Mutt 1.11.0 through 2.0.x before 2.0.7 (and NeoMutt 2019-10-25 through 2021-05-04) has a $imap_qresync issue in which imap/util.c has an out
CriticalCVSS 9.1No exploitEPSS 3%mutt · muttMay 5, 2021
- CVE-2018-1436331Monitor
An issue was discovered in NeoMutt before 2018-07-16.
HighCVSS 7.5No exploitEPSS 2%neomutt · neomuttJul 17, 2018
- CVE-2024-4939326Monitor
Mutt: neomutt: to and cc email header fields are not protected by cryptographic signing
MediumCVSS 6.5No exploitEPSS 0%mutt · muttNov 11, 2024
- CVE-2020-1495424Monitor
Mutt before 1.14.4 and NeoMutt before 2020-06-19 have a STARTTLS buffering issue that affects IMAP, SMTP, and POP3.
MediumCVSS 5.9No exploitEPSS 2%mutt · muttJun 21, 2020
- CVE-2018-1435522Monitor
An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16.
MediumCVSS 5.3No exploitEPSS 3%mutt · muttJul 17, 2018
- CVE-2020-2889622Monitor
Mutt before 2.0.2 and NeoMutt before 2020-11-20 did not ensure that $ssl_force_tls was processed if an IMAP server's initial server response
MediumCVSS 5.3No exploitEPSS 2%mutt · muttNov 23, 2020
- CVE-2024-4939421Monitor
Mutt: neomutt: in-reply-to email header field it not protected by cryptograpic signing
MediumCVSS 5.3No exploitEPSS 0%mutt · muttNov 11, 2024
- CVE-2024-4939521Monitor
Mutt: neomutt: bcc email header field is indirectly leaked by cryptographic info block
MediumCVSS 5.3No exploitEPSS 0%mutt · muttNov 11, 2024