Security: foxcpp/maddy
Security Advisories
View known security vulnerabilities and report new vulnerabilities privately to maintainers.
-
LDAP Filter Injection via Unsanitized UsernameGHSA-5835-4gvc-32pc published
Apr 12, 2026 by foxcppHigh -
Full authentication bypass if SASL authorization username is specifiedGHSA-4g76-w3xw-2x6w published
Mar 13, 2023 by foxcppCritical -
auth.pam allows accounts with expired passwords and expired accountsGHSA-6cp7-g972-w9m9 published
Mar 6, 2022 by foxcppModerate -
MD5 support in auth.shadowGHSA-qh54-9vc5-m9fg published
Oct 11, 2021 by foxcppLow -
S3 storage write is not aborted on errors leading to unbounded memory usageGHSA-m6m5-pp4g-fcc8 published
Oct 6, 2021 by foxcppHigh -
Denial-of-Service via specially crafted message (OOM crash)GHSA-8jp9-qm2r-p877 published
May 14, 2020 by foxcppLow