Known Vulnerabilities for Mail Server by Icewarp
Listed below are 10 of the newest known vulnerabilities associated with "Mail Server" by "Icewarp".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-46584 json | Improper Input Validation, Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache Camel Mail Comp... | Not Provided | 2026-07-06 | 2026-07-06 |
| CVE-2026-28496 json | FOSSBilling is a free, open-source billing and client management system. Versions prior to 0.8.0 have a Server-Side Template ... | Not Provided | 2026-06-23 | 2026-06-23 |
| CVE-2026-15155 json | The Essential Addons for Elementor – Popular Elementor Templates & Widgets plugin for WordPress is vulnerable to Authentica... | Not Provided | 2026-07-11 | 2026-07-15 |
| CVE-2026-12472 json | The Kirki – Freeform Page Builder, Website Builder & Customizer plugin for WordPress is vulnerable to authorization bypass ... | Not Provided | 2026-07-02 | 2026-07-02 |
| CVE-2026-11944 json | openSIS Classic 9.3 contains an authenticated path traversal vulnerability in the legacy messaging sent-mail attachment downl... | Not Provided | 2026-07-14 | 2026-07-14 |
| CVE-2026-7460 json | mailcow-dockerized contains a stored cross-site scripting vulnerability in the administrator Queue Manager. The Queue Manager... | Not Provided | 2026-05-20 | 2026-05-20 |
| CVE-2026-4371 json | A malicious mail server could send malformed strings with negative lengths, causing the parser to read memory outside the buf... | Not Provided | 2026-03-24 | 2026-07-15 |
| CVE-2023-39700 json | IceWarp Mail Server v10.4.5 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the color para... | 6.1 - MEDIUM | 2023-08-25 | 2023-11-07 |
| CVE-2023-39699 json | IceWarp Mail Server v10.4.5 was discovered to contain a local file inclusion (LFI) vulnerability via the component /calendar/... | 9.8 - CRITICAL | 2023-08-25 | 2023-08-30 |
| CVE-2021-36580 json | Not Provided | 2023-07-27 | 2026-07-09 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Icewarp | Mail Server | 9.4.2 | |||
| Application | Icewarp | Mail Server | 9.4.1 | |||
| Application | Icewarp | Mail Server | 9.4.0 | |||
| Application | Icewarp | Mail Server | 9.3.2 | |||
| Application | Icewarp | Mail Server | 9.3.1 | |||
| Application | Icewarp | Mail Server | 12.3.0.1 | |||
| Application | Icewarp | Mail Server | 12.2.1.1 | |||
| Application | Icewarp | Mail Server | 12.2.0 | |||
| Application | Icewarp | Mail Server | 12.1.1 | |||
| Application | Icewarp | Mail Server | 12.1.0 | |||
| Application | Icewarp | Mail Server | 12.0.4 | |||
| Application | Icewarp | Mail Server | 12.0.3.1 | |||
| Application | Icewarp | Mail Server | 12.0.3 | |||
| Application | Icewarp | Mail Server | 12.0.2 | |||
| Application | Icewarp | Mail Server | 12.0.1 | |||
| Application | Icewarp | Mail Server | 12.0.0 | |||
| Application | Icewarp | Mail Server | 11.4.6 | |||
| Application | Icewarp | Mail Server | 11.4.5 | |||
| Application | Icewarp | Mail Server | 11.4.4 | |||
| Application | Icewarp | Mail Server | 11.4.3 |