Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

exim — Vulnerabilities & Security Advisories 18

Browse all 18 CVE security advisories affecting exim. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Exim serves as a widely deployed mail transfer agent for routing and delivering email across networks. Historically, it has been susceptible to remote code execution vulnerabilities, often through buffer overflows or improper input validation, along with cross-site scripting flaws and privilege escalation issues. The software's complex configuration and extensive feature set have contributed to security challenges, with 14 CVEs documented. Notable incidents include critical RCE vulnerabilities in versions 4.87 and 4.92, which allowed attackers to execute arbitrary code with root privileges. Despite these issues, Exim remains a core component in many email infrastructures due to its flexibility and robust routing capabilities.

Top products by exim: exim libspf2
CVE ID Title CVSS Severity Published
CVE-2026-66141 Exim 软件供应链问题漏洞 — Exim CWE-829 7.4 High 2026-07-24
CVE-2026-66140 Exim 路径遍历漏洞 — Exim CWE-24 8.4 High 2026-07-24
CVE-2026-48840 Exim 安全漏洞 — Exim CWE-839 5.3 Medium 2026-05-30
CVE-2026-45185 Exim 资源管理错误漏洞 — Exim CWE-416 9.8 Critical 2026-05-12
CVE-2026-40686 Exim 缓冲区错误漏洞 — Exim CWE-125 3.7 Low 2026-04-30
CVE-2026-40685 Exim 缓冲区错误漏洞 — Exim CWE-684 6.5 Medium 2026-04-30
CVE-2026-40687 Exim 安全漏洞 — Exim CWE-909 4.8 Medium 2026-04-30
CVE-2026-40684 Exim 安全漏洞 — Exim CWE-684 5.9 Medium 2026-04-30
CVE-2025-67896 Exim 安全漏洞 — Exim CWE-122 7.0 High 2025-12-14
CVE-2025-30232 Exim 安全漏洞 — Exim CWE-416 8.1 High 2025-03-27
CVE-2025-26794 Exim 安全漏洞 — Exim CWE-89 7.5 High 2025-02-21
CVE-2023-42119 Exim dnsdb Out-Of-Bounds Read Information Disclosure Vulnerability — Exim CWE-125 6.5 - 2024-05-03
CVE-2023-42118 Exim libspf2 Integer Underflow Remote Code Execution Vulnerability — libspf2 CWE-191 8.8 - 2024-05-03
CVE-2023-42117 Exim Improper Neutralization of Special Elements Remote Code Execution Vulnerability — Exim CWE-138 9.8 - 2024-05-03
CVE-2023-42116 Exim SMTP Challenge Stack-based Buffer Overflow Remote Code Execution Vulnerability — Exim CWE-121 9.8 - 2024-05-03
CVE-2023-42115 Exim AUTH Out-Of-Bounds Write Remote Code Execution Vulnerability — Exim CWE-787 9.8 - 2024-05-03
CVE-2023-42114 Exim NTLM Challenge Out-Of-Bounds Read Information Disclosure Vulnerability — Exim CWE-125 5.3 - 2024-05-03
CVE-2019-10149 Exim 操作系统命令注入漏洞 — exim CWE-78 9.8 - 2019-06-05

This page lists every published CVE security advisory associated with exim. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.