Skip to content
Noroxi

Postorius project records

2 published records for vendor postorius project.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
100%
Median publish → KEV
No record has entered KEV

Records by year

  1. 21
  2. 26

Bar: total · dark part: CISA KEV.

Recurring classes

The weakness classes this vendor ships most often: where to look.

CWE

Attack profile

All records

2 records
  • Postorius through 1.3.13 does not escape HTML in the message subject when rendering it in the Held messages pop-up, as exploited in the wild

    MediumCVSS 6.1No exploitEPSS 0%

    postorius project · postoriusMay 7, 2026

  • An issue was discovered in views/list.py in GNU Mailman Postorius before 1.3.5.

    MediumCVSS 5.4No exploitEPSS 1%

    postorius project · postoriusSep 10, 2021