Critical (CVSS 10) tagged CVE-2025-52691 affecting SmarterMail softwaregithub.com/rxerium 1 pointruntimepanic8 months ago1 commentSaveHideCopy link On HNComments−runtimepanicOP8moSmarterMail Build 9406 and earlier is vulnerable to arbitrary file upload. An unauthenticated attacker can upload arbitrary files to any location on the mail server, potentially enabling remote code execution.
Comments
SmarterMail Build 9406 and earlier is vulnerable to arbitrary file upload. An unauthenticated attacker can upload arbitrary files to any location on the mail server, potentially enabling remote code execution.