VYPR

Snappymail

by The Djmaze

Source repositories

CVEs (1)

  • CVE-2024-45800MedSep 16, 2024
    risk 0.26cvss 5.0epss 0.00

    Snappymail is an open source web-based email client. SnappyMail uses the `cleanHtml()` function to cleanup HTML and CSS in emails. Research discovered that the function has a few bugs which cause an mXSS exploit. Because the function allowed too many (invalid) HTML elements, it…