<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
  <title>CVE Daily – Postfix (High+Critical)</title>
  <link>https://cvedaily.com/pages/tags/postfix.html</link>
  <atom:link href="https://cvedaily.com/feed-tags/postfix-severe.xml" rel="self" type="application/rss+xml"/>
  <description>CVE Daily – Postfix (High+Critical)</description>
  <language>en</language>
  <lastBuildDate>Wed, 03 Jun 2026 21:26:44 +0000</lastBuildDate>
  <item>
    <title>[High] CVE-2026-7460 – mailcow-dockerized contains a stored cross-site scripting vulnerability in the a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-7460</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-7460</guid>
    <pubDate>Wed, 20 May 2026 04:16:56 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-7460</strong></p>
  <p>mailcow-dockerized contains a stored cross-site scripting vulnerability in the administrator Queue Manager. The Queue Manager fetches mail queue entries from /api/v1/get/mailq/all, copies server-controlled Postfix queue fields into DataTables rows, and renders several of those fields as HTML without adequate output encoding.    This issue affects mailcow-dockerized: 2026-03b.</p>
  <p><strong>CVSS:</strong> 7.4 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-7460">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-52626 – In the Linux kernel, the following vulnerability has been resolved:

net/mlx5e: ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-52626</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-52626</guid>
    <pubDate>Tue, 26 Mar 2024 18:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-52626</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  net/mlx5e: Fix operation precedence bug in port timestamping napi_poll context  Indirection (*) is of lower precedence than postfix increment (++). Logic in napi_poll context would cause an out-of-bound read by first increment the pointer address by byte address space and then dereference the value. Rather, the intended logic wa…</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-52626">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-34108 – mailcow is a mail server suite based on Dovecot, Postfix and other open source s...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-34108</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-34108</guid>
    <pubDate>Wed, 07 Jun 2023 18:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-34108</strong></p>
  <p>mailcow is a mail server suite based on Dovecot, Postfix and other open source software, that provides a modern web UI for user/server administration. A vulnerability has been discovered in mailcow which allows an attacker to manipulate internal Dovecot variables by using specially crafted passwords during the authentication process. The issue arises from the behavior of the `passwd-verify.lua` s…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-78</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-34108">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-3569 – Due to an issue with incorrect sudo permissions, Zimbra Collaboration Suite (ZCS...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-3569</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-3569</guid>
    <pubDate>Mon, 17 Oct 2022 23:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-3569</strong></p>
  <p>Due to an issue with incorrect sudo permissions, Zimbra Collaboration Suite (ZCS) suffers from a local privilege escalation issue in versions 9.0.0 and prior, where the 'zimbra' user can effectively coerce postfix into running arbitrary commands as 'root'.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-271</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-3569">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2021-33913 – libspf2 before 1.2.11 has a heap-based buffer overflow that might allow remote a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-33913</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-33913</guid>
    <pubDate>Wed, 19 Jan 2022 18:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2021-33913</strong></p>
  <p>libspf2 before 1.2.11 has a heap-based buffer overflow that might allow remote attackers to execute arbitrary code (via an unauthenticated e-mail message from anywhere on the Internet) with a crafted SPF DNS record, because of SPF_record_expand_data in spf_expand.c. The amount of overflowed data depends on the relationship between the length of an entire domain name and the length of its leftmost…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-33913">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2021-33912 – libspf2 before 1.2.11 has a four-byte heap-based buffer overflow that might allo...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-33912</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-33912</guid>
    <pubDate>Wed, 19 Jan 2022 18:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2021-33912</strong></p>
  <p>libspf2 before 1.2.11 has a four-byte heap-based buffer overflow that might allow remote attackers to execute arbitrary code (via an unauthenticated e-mail message from anywhere on the Internet) with a crafted SPF DNS record, because of incorrect sprintf usage in SPF_record_expand_data in spf_expand.c. The vulnerable code may be part of the supply chain of a site's e-mail infrastructure (e.g., wi…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-33912">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2017-10140 – Postfix before 2.11.10, 3.0.x before 3.0.10, 3.1.x before 3.1.6, and 3.2.x befor...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-10140</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-10140</guid>
    <pubDate>Mon, 16 Apr 2018 17:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2017-10140</strong></p>
  <p>Postfix before 2.11.10, 3.0.x before 3.0.10, 3.1.x before 3.1.6, and 3.2.x before 3.2.2 might allow local users to gain privileges by leveraging undocumented functionality in Berkeley DB 2.x and later, related to reading settings from DB_CONFIG in the current directory.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-10140">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2010-0230 – SUSE Linux Enterprise 10 SP3 (SLE10-SP3) and openSUSE 11.2 configures postfix to...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2010-0230</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2010-0230</guid>
    <pubDate>Fri, 22 Jan 2010 21:30:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2010-0230</strong></p>
  <p>SUSE Linux Enterprise 10 SP3 (SLE10-SP3) and openSUSE 11.2 configures postfix to listen on all network interfaces, which might allow remote attackers to bypass intended access restrictions.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-264</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2010-0230">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2007-3791 – Buffer overflow in the w_read function in sockets.c in Cami Sardinha and Nigel K...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2007-3791</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2007-3791</guid>
    <pubDate>Sun, 15 Jul 2007 23:30:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2007-3791</strong></p>
  <p>Buffer overflow in the w_read function in sockets.c in Cami Sardinha and Nigel Kukard policyd before 1.81 for Postfix allows remote attackers to cause a denial of service and possibly execute arbitrary code via long SMTP commands.  NOTE: some of these details are obtained from third party information.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2007-3791">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2005-0337 – Postfix 2.1.3, when /proc/net/if_inet6 is not available and permit_mx_backup is ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2005-0337</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2005-0337</guid>
    <pubDate>Mon, 02 May 2005 04:00:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2005-0337</strong></p>
  <p>Postfix 2.1.3, when /proc/net/if_inet6 is not available and permit_mx_backup is enabled in smtpd_recipient_restrictions, allows remote attackers to bypass e-mail restrictions and perform mail relaying by sending mail to an IPv6 hostname.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2005-0337">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2004-1113 – SQL injection vulnerability in SQLgrey Postfix greylisting service before 1.2.0 ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2004-1113</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2004-1113</guid>
    <pubDate>Mon, 10 Jan 2005 05:00:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2004-1113</strong></p>
  <p>SQL injection vulnerability in SQLgrey Postfix greylisting service before 1.2.0 allows remote attackers to execute arbitrary SQL commands via the (1) sender or (2) recipient e-mail addresses.</p>
  <p><strong>CVSS:</strong> 10.0 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2004-1113">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2004-1088 – Postfix server for Apple Mac OS X 10.3.6, when using CRAM-MD5, allows remote att...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2004-1088</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2004-1088</guid>
    <pubDate>Thu, 02 Dec 2004 05:00:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2004-1088</strong></p>
  <p>Postfix server for Apple Mac OS X 10.3.6, when using CRAM-MD5, allows remote attackers to send mail without authentication by replaying authentication information.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2004-1088">View on NVD</a></p>
]]>
    </description>
  </item>
</channel>
</rss>
