Known Vulnerabilities for Email Server by Icewarp
Listed below are 3 of the newest known vulnerabilities associated with "Email Server" by "Icewarp".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-65051 json | Ninja Forms WordPress plugin version 3.14.8 contains a client-side enforcement of server-side security vulnerability that all... | Not Provided | 2026-07-21 | 2026-07-21 |
| CVE-2026-63101 json | Open Event Server through 1.19.1 contains a missing authentication vulnerability that allows unauthenticated attackers to exp... | Not Provided | 2026-07-17 | 2026-07-17 |
| CVE-2026-63095 json | Dendrite through 0.13.8 contains an improper authorization vulnerability in the Matrix Client-Server API that allows any auth... | Not Provided | 2026-07-17 | 2026-07-17 |
| CVE-2026-62241 json | clawvet self-hosted API server (apps/api) before 0.7.5 hard-codes a fallback JWT secret ('clawvet-dev-secret-change-me') in a... | Not Provided | 2026-07-17 | 2026-07-17 |
| CVE-2026-61451 json | The Grav API plugin (grav-plugin-api) before 1.0.4 does not validate the origin of the client-supplied admin_base_url field i... | Not Provided | 2026-07-15 | 2026-07-15 |
| CVE-2026-60104 json | Bitwarden Server before 2026.6.0 does not verify that the email in a POST /auth-requests/admin-request body belongs to the au... | Not Provided | 2026-07-08 | 2026-07-14 |
| CVE-2026-58451 json | Horde IMP before 7.0.1 contains a path traversal vulnerability in lib/Compose.php that allows authenticated attackers to read... | Not Provided | 2026-07-01 | 2026-07-14 |
| CVE-2026-56073 json | Cap-go before 12.128.2 contains an authentication bypass vulnerability in OTP verification that allows attackers to bypass em... | Not Provided | 2026-06-19 | 2026-06-22 |
| CVE-2026-55792 json | Craft CMS is a content management system (CMS). In versions starting from 4.0.0-RC1 and prior to 4.18.0, and 5.0.0-RC1 and ab... | Not Provided | 2026-07-02 | 2026-07-02 |
| CVE-2026-55666 json | Rocket.Chat is an open-source, secure, fully customizable communications platform. Prior to 8.5.1, 8.4.4, 8.3.6, 8.2.6, 8.1.6... | Not Provided | 2026-06-24 | 2026-06-29 |