Known Vulnerabilities for Evolution by Gnome
Listed below are 10 of the newest known vulnerabilities associated with "Evolution" by "Gnome".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-2604 json | A flaw was found in evolution-data-server. Inconsistent comparison logic in the addressbook file backend allows a Flatpak app... | Not Provided | 2026-06-17 | 2026-06-17 |
| CVE-2021-47939 json | Evolution CMS 3.1.6 contains a remote code execution vulnerability that allows authenticated users with module creation permi... | Not Provided | 2026-05-10 | 2026-05-11 |
| CVE-2021-3349 json | ** DISPUTED ** GNOME Evolution through 3.38.3 produces a "Valid signature" message for an unknown identifier on a previously ... | 3.3 - LOW | 2021-02-01 | 2023-11-07 |
| CVE-2020-11879 json | An issue was discovered in GNOME Evolution before 3.35.91. By using the proprietary (non-RFC6068) "mailto?attach=..." paramet... | 6.5 - MEDIUM | 2020-04-17 | 2020-09-04 |
| CVE-2018-15587 json | GNOME Evolution through 3.28.2 is prone to OpenPGP signatures being spoofed for arbitrary messages using a specially crafted ... | 6.5 - MEDIUM | 2019-02-11 | 2019-06-10 |
| CVE-2018-12422 json | ** DISPUTED ** addressbook/backends/ldap/e-book-backend-ldap.c in Evolution-Data-Server in GNOME Evolution through 3.29.2 mig... | 9.8 - CRITICAL | 2018-06-15 | 2023-11-07 |
| CVE-2017-17689 json | The S/MIME specification allows a Cipher Block Chaining (CBC) malleability-gadget attack that can indirectly lead to plaintex... | 5.9 - MEDIUM | 2018-05-16 | 2019-10-03 |
| CVE-2016-10727 json | camel/providers/imapx/camel-imapx-server.c in the IMAPx component in GNOME evolution-data-server before 3.21.2 proceeds with ... | 9.8 - CRITICAL | 2018-07-20 | 2018-09-18 |
| CVE-2013-4166 json | The gpg_ctx_add_recipient function in camel/camel-gpg-context.c in GNOME Evolution 3.8.4 and earlier and Evolution Data Serve... | 7.5 - HIGH | 2020-02-06 | 2023-02-13 |
| CVE-2011-3201 json | Not Provided | 2013-03-08 | 2026-04-29 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Gnome | Evolution | 3.9.92 | |||
| Application | Gnome | Evolution | 3.9.91 | |||
| Application | Gnome | Evolution | 3.9.90 | |||
| Application | Gnome | Evolution | 3.9.5 | |||
| Application | Gnome | Evolution | 3.9.4 | |||
| Application | Gnome | Evolution | 3.9.3 | |||
| Application | Gnome | Evolution | 3.9.2 | |||
| Application | Gnome | Evolution | 3.9.1 | |||
| Application | Gnome | Evolution | 3.8.5 | |||
| Application | Gnome | Evolution | 3.8.4 | |||
| Application | Gnome | Evolution | 3.8.3 | |||
| Application | Gnome | Evolution | 3.8.2 | |||
| Application | Gnome | Evolution | 3.8.1 | |||
| Application | Gnome | Evolution | 3.8.0 | |||
| Application | Gnome | Evolution | 3.7.92 | |||
| Application | Gnome | Evolution | 3.7.91 | |||
| Application | Gnome | Evolution | 3.7.90 | |||
| Application | Gnome | Evolution | 3.7.5 | |||
| Application | Gnome | Evolution | 3.7.4 | |||
| Application | Gnome | Evolution | 3.7.3 |