mailpile@0.4.0.dev20141126 vulnerabilities

An e-mail search engine and webmail client, with easy encryption and privacy.

Direct Vulnerabilities

Known vulnerabilities in the mailpile package. This does not include vulnerabilities belonging to this package’s dependencies.

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for free
Vulnerability Vulnerable Version
  • C
Improper Key Management

mailpile is a web-mail client with user-friendly encryption and privacy features.

Affected versions of this package are vulnerable to Improper Key Management. The "Security and Privacy" Encryption feature in Mailpile before does not exclude disabled, revoked, and expired keys.

How to fix Improper Key Management?

Upgrade mailpile to version 1.0.0rc4 or higher.

[,1.0.0rc4)