7.5
CVE-2025-14874
- EPSS 0.08%
- Veröffentlicht 18.12.2025 08:40:31
- Zuletzt bearbeitet 08.01.2026 03:15:43
- Quelle secalert@redhat.com
- CVE-Watchlists
- Unerledigt
A flaw was found in Nodemailer. This vulnerability allows a denial of service (DoS) via a crafted email address header that triggers infinite recursion in the address parser.
Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Nodemailer ≫ Nodemailer SwPlatformnode.js Version < 7.0.11
Redhat ≫ Advanced Cluster Management For Kubernetes Version2.0
Redhat ≫ Ceph Storage Version8.0
Redhat ≫ Developer Hub Version-
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.08% | 0.243 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| secalert@redhat.com | 7.5 | 3.9 | 3.6 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
|
| nvd@nist.gov | 7.5 | 3.9 | 3.6 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
|
CWE-703 Improper Check or Handling of Exceptional Conditions
The product does not properly anticipate or handle exceptional conditions that rarely occur during normal operation of the product.