CVE-2016-4460: Apache Pony Mail

Critical severity, CVSS 9.8. EPSS: 6.1% chance of exploitation in the next 30 days.

Apache Pony Mail 0.6c through 0.8b allows remote attackers to bypass authentication.

Affected products

  • Apache Pony Mail: version 0.6c only; version 0.7b only; version 0.8b only

Published 2017-08-22. Last modified 2026-06-17.