Vulnerabilities > KDE > Trojita

DATE CVE VULNERABILITY TITLE RISK
2021-08-10 CVE-2021-38372 Command Injection vulnerability in KDE Trojita 0.7
In KDE Trojita 0.7, man-in-the-middle attackers can create new folders because untagged responses from an IMAP server are accepted before STARTTLS.
network
high complexity
kde CWE-77
3.7
2018-05-16 CVE-2017-17689 The S/MIME specification allows a Cipher Block Chaining (CBC) malleability-gadget attack that can indirectly lead to plaintext exfiltration, aka EFAIL. 5.9