Vulnerabilities > KDE > Messagelib

DATE CVE VULNERABILITY TITLE RISK
2021-06-02 CVE-2021-31855 Cleartext Storage of Sensitive Information vulnerability in KDE Messagelib 5.5.1
KDE Messagelib through 5.17.0 reveals cleartext of encrypted messages in some situations.
network
low complexity
kde CWE-312
6.5
2017-06-13 CVE-2017-9604 Missing Encryption of Sensitive Data vulnerability in KDE Kmail and Messagelib
KDE kmail before 5.5.2 and messagelib before 5.5.2, as distributed in KDE Applications before 17.04.2, do not ensure that a plugin's sign/encrypt action occurs during use of the Send Later feature, which allows remote attackers to obtain sensitive information by sniffing the network.
network
low complexity
kde CWE-311
7.5