phpmailer project
Security Risk Profile
80
/100
criticalSecurity Risk Score
Comprehensive risk assessment based on 10 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from November 1, 2015 to present
10
Total CVEs
7
Critical+High
1
Exploited
0
Unpatched
Threat Assessment
Avg CVSS
7.9
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
0
Critical/High
Risk Level
80/100
critical
⚠️ 1 Active Exploits
Severity Distribution
Critical
3High
4Medium
3Low
0Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
0Age Distribution
Common Weaknesses (CWE)
1
Command Injection
2
2
Malicious File Upload
1
3
Code Injection
1
4
XSS
1
5
Infoleak
1
Most Affected Products
1. WordPress WordPress24
2. composer/phpmailer/phpmailer16
3. PHPMailer project PHPMailer12
4. Fedoraproject Fedora8
5. debian/libphp-phpmailer7
Recent Vulnerabilities
See more →CVE-2021-34551
CVSS 8.1high
6/16/2021
CVE-2021-3603
CVSS 8.1high
Inclusion of Functionality from Untrusted Control Sphere in PHPMailer/PHPMailer
6/16/2021
CVE-2020-36326
CVSS 9.8critical
4/28/2021
CVE-2020-13625
CVSS 7.5high
6/8/2020
CVE-2018-19296
CVSS 8.8high
7/26/2017
CVE-2017-11503
CVSS 6.1medium
7/20/2017
CVE-2016-10045
CVSS 9.8critical
12/28/2016
CVE-2016-10033
CVSS 9.8critical
PHPMailer Command Injection Vulnerability
12/23/2016⚠ Exploited
CVE-2017-5223
CVSS 5.5medium
1/6/2016
CVE-2015-8476
CVSS 5.0medium
11/1/2015
Monitor phpmailer project in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.