Mailman

Vendor:

First CVE: Oct 20, 2000 · Active for 25 years

47
Total CVEs
More Total CVEs than 97% of tracked products
2.9
Avg CVEs / Year
Higher CVE frequency than 76% of tracked products
5.8
Avg CVSS
Higher Avg CVSS than 18% of tracked products
0.0%
KEV Rate
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact Mailman over time

Volume of CVEsAvg CVSS Base Score
First CVE
Oct 20, 2000
25 years ago
Most Recent CVE
Apr 20, 2025
460 days ago

CVE Severity & Scoring

Mailman47 CVEs
All CVEs352,231 CVEs
LowMediumHigh
Attack Vector
Local1 (2.1%)
Network16 (34.0%)
Unknown30 (63.8%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low15 (31.9%)
High2 (4.3%)
Unknown30 (63.8%)
User Interaction
None6 (12.8%)
Unknown30 (63.8%)
Required11 (23.4%)
Privileges Required
Low5 (10.6%)
High0 (0.0%)
None12 (25.5%)
Unknown30 (63.8%)

Top CVEs

Signals from CVEs in this product scope (47 CVEs).

47 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
Multiple cross-site scripting (XSS) vulnerabilities in Mailman before 2.1.9rc1 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Sep 6, 20066.830NOYES
Cross-site scripting vulnerability in Mailman before 2.0.12 allows remote attackers to execute script as other users via a subscriber's list subscription options in the (1) adminpw
Sep 5, 20027.530NOYES
Cross-site scripting vulnerabilities in Mailman before 2.0.11 allow remote attackers to execute script via (1) the admin login page, or (2) the Pipermail index summaries.
Jun 18, 20027.530NOYES
In GNU Mailman before 2.1.38, a list member or moderator can get a CSRF token and craft an admin request (using that token) to set a new admin password or make other changes.
Dec 2, 20218.828NONO
Cross-site scripting (XSS) vulnerability in options.py for Mailman 2.1 allows remote attackers to inject script or HTML into web pages via the (1) email or (2) language parameters.
Feb 7, 20034.327NOYES
GNU Mailman before 2.1.35 may allow remote Privilege Escalation. A csrf_token value is not specific to a single user account. An attacker can obtain a value within the context of a
Oct 21, 20218.026NONO
Mailman 2.0.x before 2.0.6 allows remote attackers to gain access to list administrative pages when there is an empty site or list password, which is not properly handled during th
Sep 5, 20017.525NONO
GNU Mailman 2.1.39, as bundled in cPanel (and WHM), in certain external archiver configurations, allows unauthenticated attackers to execute arbitrary OS commands via shell metacha
Apr 20, 20258.124NONO
An issue was discovered in GNU Mailman before 2.1.28. A crafted URL can cause arbitrary text to be displayed on a web page from a trusted site.
Jul 12, 20186.524NONO
GNU Mailman 2.1.39, as bundled in cPanel (and WHM), allows unauthenticated attackers to read arbitrary files via ../ directory traversal at /mailman/private/mailman (aka the privat
Apr 20, 20257.523NONO

Exploit Exposure

Signals from CVEs in this product scope (47 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
4 CVEs
8.5% of CVEs· 88th percentile

Social Chatter

Signals from CVEs in this product scope (47 CVEs).

Media Mentions

Signals from CVEs in this product scope (47 CVEs).

Top CNAs Publishing CVEs For Mailman

Top CWEs

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
7.015.11.9%00
6.015.11.9%00
5.115.11.9%00
5.015.11.9%00
2.1b185.43.1%01
2.1.945.22.2%00
2.1.865.53.0%01
2.1.764.42.9%01
2.1.675.83.0%01
2.1.5.845.34.0%01
2.1.5105.62.9%01
2.1.4135.62.7%01
2.1.3125.42.7%01
2.1.2318.81.6%00
2.1.2218.81.6%00
2.1.2118.81.6%00
2.1.2018.81.6%00
2.1.2125.42.7%01
2.1.1918.81.6%00
2.1.18-118.81.6%00