| Bug | Description | 
|---|
| CVE-2021-34551 | PHPMailer before 6.5.0 on Windows allows remote code execution if lang ... | 
| CVE-2020-36326 | PHPMailer 6.1.8 through 6.4.0 allows object injection through Phar Des ... | 
| CVE-2020-13625 | PHPMailer before 6.1.6 contains an output escaping bug when the name o ... | 
| CVE-2018-19296 | PHPMailer before 5.2.27 and 6.x before 6.0.6 is vulnerable to an objec ... | 
| CVE-2017-11503 | PHPMailer 5.2.23 has XSS in the "From Email Address" and "To Email Add ... | 
| CVE-2017-5223 | An issue was discovered in PHPMailer before 5.2.22. PHPMailer's msgHTM ... | 
| CVE-2016-10045 | The isMail transport in PHPMailer before 5.2.20 might allow remote att ... | 
| CVE-2016-10033 | The mailSend function in the isMail transport in PHPMailer before 5.2. ... | 
| CVE-2015-8476 | Multiple CRLF injection vulnerabilities in PHPMailer before 5.2.14 all ... | 
| CVE-2007-3215 | PHPMailer 1.7, when configured to use sendmail, allows remote attacker ... | 
| CVE-2005-1807 | The Data function in class.smtp.php in PHPMailer 1.7.2 and earlier all ... |