Vulnerabilities > Claws Mail > Medium

DATE CVE VULNERABILITY TITLE RISK
2021-07-30 CVE-2021-37746 Open Redirect vulnerability in multiple products
textview_uri_security_check in textview.c in Claws Mail before 3.18.0, and Sylpheed through 3.7.0, does not have sufficient link checks before accepting a click.
6.1
2019-11-25 CVE-2012-5527 Insufficiently Protected Credentials vulnerability in Claws-Mail Vcalendar
Claws Mail vCalendar plugin: credentials exposed on interface
local
low complexity
claws-mail CWE-522
5.5
2019-04-07 CVE-2019-10735 Cleartext Transmission of Sensitive Information vulnerability in Claws-Mail Mail 3.14.1
In Claws Mail 3.14.1, an attacker in possession of S/MIME or PGP encrypted emails can wrap them as sub-parts within a crafted multipart email.
network
low complexity
claws-mail CWE-319
4.3