Medium severity6.5NVD Advisory· Published Dec 23, 2016· Updated May 6, 2026
CVE-2016-7968
CVE-2016-7968
Description
KMail since version 5.3.0 used a QWebEngine based viewer that had JavaScript enabled. HTML Mail contents were not sanitized for JavaScript and included code was executed.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- www.openwall.com/lists/oss-security/2016/10/05/1nvdThird Party Advisory
- www.securityfocus.com/bid/93360nvdThird Party AdvisoryVDB Entry
- www.kde.org/info/security/advisory-20161006-3.txtnvdVendor Advisory
News mentions
0No linked articles in our index yet.