GHSA-hchw-xwhf-3qvmHighCVSS 7.4

In neomutt and mutt, the To and Cc email headers are not validated by cryptographic signing which...

Published
November 12, 2024
Last Modified
June 26, 2026

🔗 CVE IDs covered (1)

📋 Description

In neomutt and mutt, the To and Cc email headers are not validated by cryptographic signing which allows an attacker that intercepts a message to change their value and include himself as a one of the recipients to compromise message confidentiality.

🔗 References (7)