Grommunio develops Gromox, an open-source groupware and messaging platform that provides email, calendar, and collaboration services as an alternative to proprietary enterprise systems. The durable signal centers on configuration and access-control weaknesses, specifically incorrect default permissions that can expose functionality or data if left unchecked during deployment. Current exploitation activity and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Grommunio over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-37030HIGH Weak permissions on the configuration file in the PAM module in Grommunio Gromox 0.5 through 1.x before 1.28 allow a local unprivileged user in the gromox group to have the PAM sta | Aug 4, 2022 | 7.8 | 25 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Grommunio.
Media articles that mention a CVE ID that affects a product developed by Grommunio — matched by CVE ID, not by vendor name.