CVE-2016-7968

Publication date

2016-12-23 22:00:00

Family

mitre

State

PUBLISHED

Description

KMail since version 5.3.0 used a QWebEngine based viewer that had JavaScript enabled. HTML Mail contents were not sanitized for JavaScript and included code was executed.