Skip to main content

Vendor archive

phpmailer_project CVEs

Beta · best-effort

10 CVEs tagged to vendor phpmailer_project3 Critical, 4 High, 3 Medium, 0 Low, 0 Unrated.

CVE-2020-36326

Published Apr 28, 2021

PHPMailer 6.1.8 through 6.4.0 allows object injection through Phar Deserialization via addAttachment with a UNC pathname. NOTE: this is similar to CVE-2018-19296, but arose becaus…

CVSS 9.8 · Critical
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2017-5223

Published Jan 16, 2017

An issue was discovered in PHPMailer before 5.2.22. PHPMailer's msgHTML method applies transformations to an HTML document to make it usable as an email message body. One of the t…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-10 of 10 CVEsPage 1 of 1