These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.
Mailpit, an email testing tool and API for developers, had a vulnerability from version 1.29.0 until 1.30.6. A malicious website could request /%61pi/events, bypassing CORS origin access control, and reach the /api/events WebSocket handler in an unauthenticated default Mailpit instance. This allowed the site to receive live message IDs, Message-Id values, sender and recipient fields, subjects, tags, and b [truncated]
Mailpit, an email testing tool and API for developers, is vulnerable to a memory pressure issue due to improper handling of oversized SMTP DATA lines. This allows an unauthenticated SMTP client to cause substantial memory allocation before rejection. The vulnerability arises from the readData() function in Mailpit's internal/smtpd/smtpd.go not properly checking the size of SMTP DATA lines against Server.M [truncated]
CVE-2026-67446 is a vulnerability in Mailpit, an email testing tool and API for developers, which can lead to denial of service (DoS) attacks. The issue arises from the Thumbnail handler in server/apiv1/thumbnails.go, which decodes attacker-supplied image attachments into a full raster before checking decoded dimensions, pixel count, or memory use. This can cause the server to consume disproportionately l [truncated]
CVE-2026-67445 is a vulnerability in Mailpit, an email testing tool and API for developers. The issue allows an unauthenticated remote SMTP client to send an oversized single command line, potentially causing memory pressure and reducing service availability. This vulnerability is fixed in version 1.30.4. Defenders responsible for Mailpit installations, especially those exposed to untrusted SMTP clients, [truncated]
CVE-2026-45712 is a vulnerability in Mailpit, an email testing tool and API for developers. The vulnerability occurs in the screenshot/print proxy (/proxy?data=…) which maintains a package-level assets map[string]MessageAssets cache. This cache is read without holding assetsMutex while a long-running cleanup goroutine and (re-entrant) CSS-rewriting code path concurrently write to it under the lock. This c [truncated]
CVE-2026-45711 is a path traversal vulnerability in Mailpit, an email testing tool and API for developers. The vulnerability exists in the `mailpit dump --http <base-url> <out-dir>` sub-command, which downloads every message from a remote Mailpit instance and writes each one as `<id>.eml` inside the user-supplied output directory. Due to improper handling of the message ID field, an attacker can make Mail [truncated]
Mailpit is an email testing tool and API for developers. The fix for GHSA-6jxm-fv7w-rw5j (CVE-2026-23845, 'Server-Side Request Forgery (SSRF) via HTML Check API'), shipped in mailpit `v1.28.3`, hardened `internal/htmlcheck/css.go::downloadCSSToBytes` with a 5MB size cap, a `text/css` content-type check, login-info stripping in `isValidURL`, and an opt-in `--block-remote-css-and-fonts` config flag — but di [truncated]
CVE-2026-55187 is a MEDIUM severity vulnerability in Mailpit's Link Check API. An attacker can bypass internal IP restrictions and map internal service reachability by exploiting incomplete remediation for CVE-2026-27808. The vulnerability allows an attacker to coerce the Link Check API into dialing internal destinations using IPv6 transition mechanisms or prefixes. This issue is fixed in version 1.30.2. [truncated]