Postorius project records
2 published records for vendor postorius project.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 100%
- Median publish → KEV
- No record has entered KEV
Attack profile
All records
2 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
24Monitor | CVE-2026-44742No exploit | Postorius through 1.3.13 does not escape HTML in the message subject when rendering it in the Held messages pop-up, as exploited in the wildpostorius project · postorius · CWE-79 | Medium6.1 | — | 0.3% | May 7, 2026 |
21Monitor | CVE-2021-40347No exploit | An issue was discovered in views/list.py in GNU Mailman Postorius before 1.3.5.postorius project · postorius | Medium5.4 | — | 1.2% | Sep 10, 2021 |
- CVE-2026-4474224Monitor
Postorius through 1.3.13 does not escape HTML in the message subject when rendering it in the Held messages pop-up, as exploited in the wild
MediumCVSS 6.1No exploitEPSS 0%postorius project · postoriusMay 7, 2026
- CVE-2021-4034721Monitor
An issue was discovered in views/list.py in GNU Mailman Postorius before 1.3.5.
MediumCVSS 5.4No exploitEPSS 1%postorius project · postoriusSep 10, 2021