textview_uri_security_check in textview.c in Claws Mail before 3.18.0, and Sylpheed through 3.7.0, does not have sufficient link checks before accepting a click.
References
Configurations
History
07 Nov 2023, 03:37
Type | Values Removed | Values Added |
---|---|---|
References |
|
|
Information
Published : 2021-07-30 15:15
Updated : 2024-02-28 18:28
NVD link : CVE-2021-37746
Mitre link : CVE-2021-37746
CVE.ORG link : CVE-2021-37746
JSON object : View
Products Affected
sylpheed_project
- sylpheed
fedoraproject
- fedora
claws-mail
- claws-mail
CWE
CWE-601
URL Redirection to Untrusted Site ('Open Redirect')