CVE-2019-5977: Cybozu Garoon

Medium severity, CVSS 4.3. EPSS: 1.1% chance of exploitation in the next 30 days.

Mail header injection vulnerability in Cybozu Garoon 4.0.0 to 4.10.2 may allow a remote authenticated attackers to alter mail header via the application 'E-Mail'.

Affected products

  • Cybozu Garoon: from 4.0.0, up to and including 4.10.2

Published 2019-09-12. Last modified 2026-06-17.