mailman vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the mailman package. This does not include vulnerabilities belonging to this package’s dependencies.

How to fix?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

Fix for free
VulnerabilityVulnerable Version
  • H
Cross-site Request Forgery (CSRF)

<1:2.1.29-1+deb10u4
  • M
Cross-site Scripting (XSS)

<1:2.1.29-1+deb10u3
  • M
Insufficiently Protected Credentials

<1:2.1.29-1+deb10u3
  • M
Improper Restriction of Excessive Authentication Attempts

<1:2.1.29-1+deb10u2
  • H
Cross-site Request Forgery (CSRF)

<1:2.1.29-1+deb10u2
  • M
Arbitrary Code Injection

<1:2.1.29-1+deb10u2
  • M
Arbitrary Code Injection

<1:2.1.29-1+deb10u2
  • M
Cross-site Scripting (XSS)

<1:2.1.29-1+deb10u1
  • M
Improper Input Validation

<1:2.1.27-1.1
  • M
Cross-site Scripting (XSS)

<1:2.1.27-1
  • M
Cross-site Scripting (XSS)

<1:2.1.26-1
  • H
Cross-site Request Forgery (CSRF)

<2.1.15-1
  • H
Cross-site Request Forgery (CSRF)

<1:2.1.23-1
  • H
Directory Traversal

<1:2.1.18-2
  • M
Cross-site Scripting (XSS)

<1:2.1.14-1
  • L
Cross-site Scripting (XSS)

<1:2.1.13-4.1
  • L
Cross-site Scripting (XSS)

<1:2.1.10~b3-1
  • L
CVE-2006-2191

<1:2.1.9-1
  • L
Arbitrary Code Injection

<1:2.1.8-3
  • M
CVE-2006-3636

<1:2.1.8-3
  • L
CVE-2006-1712

<0:2.1.7-2.1.8rc1-1
  • M
CVE-2006-0052

<2.1.6-1
  • H
CVE-2005-4153

<2.1.5-10
  • M
CVE-2005-3573

<2.1.5-10
  • M
CVE-2005-0202

<2.1.5-6
  • M
CVE-2005-0080

<2.1.5-5
  • M
CVE-2004-1177

<2.1.5-5
  • H
CVE-2004-1143

<2.1.5-5
  • M
CVE-2004-0412

<2.1.4-5
  • M
CVE-2003-0991

<2.1-1
  • M
CVE-2003-0992

<2.1.3
  • M
CVE-2003-0965

<2.1.4-1
  • M
CVE-2003-0038

<2.1.1-1
  • H
CVE-2002-0855

<2.0.12-1
  • H
CVE-2002-0388

<2.0.12-1