VendorsApachejamesany version
Vulnerabilities

Apache James any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

8CVEs
CVE-2021-40525
Sieve file storage vulnerable to path traversal attacks
Published 2022-01-04 · Modified
9.1EPSS 0.037
CVE-2023-26269
Apache James server: Privilege escalation through unauthenticated JMX
Published 2023-04-03 · Modified
7.8EPSS 0.007
CVE-2021-40110
Apache James IMAP vulnerable to a ReDoS
Published 2022-01-04 · Modified
7.5EPSS 0.029
CVE-2022-28220
STARTTLS command injection in Apache JAMES
Published 2022-09-08 · Modified
7.5EPSS 0.020
CVE-2021-40111
Apache James IMAP parsing Denial Of Service
Published 2022-01-04 · Modified
6.5EPSS 0.021
CVE-2021-38542
Apache James vulnerable to STARTTLS command injection (IMAP and POP3)
Published 2022-01-04 · Modified
5.9EPSS 0.023
CVE-2022-45935
Apache James server: Temporary File Information Disclosure
Published 2023-01-06 · Modified
5.5EPSS 0.004
CVE-2022-45787
Apache James MIME4J: Temporary File Information Disclosure in MIME4J TempFileStorageProvider
Published 2023-01-06 · Modified
5.5EPSS 0.003