Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-46j5-6fg5-4gv3 | Nodemailer is vulnerable to DoS through Uncontrolled Recursion |
Solution
No solution given by the vendor.
Workaround
Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base, or stability.
Thu, 08 Jan 2026 03:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
cvssV3_1
|
Tue, 06 Jan 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Nodemailer
Nodemailer nodemailer Redhat advanced Cluster Management For Kubernetes Redhat developer Hub |
|
| CPEs | cpe:2.3:a:nodemailer:nodemailer:*:*:*:*:*:node.js:*:* cpe:2.3:a:redhat:advanced_cluster_management_for_kubernetes:2.0:*:*:*:*:*:*:* cpe:2.3:a:redhat:ceph_storage:8.0:*:*:*:*:*:*:* cpe:2.3:a:redhat:developer_hub:-:*:*:*:*:*:*:* |
|
| Vendors & Products |
Nodemailer
Nodemailer nodemailer Redhat advanced Cluster Management For Kubernetes Redhat developer Hub |
Thu, 18 Dec 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 18 Dec 2025 12:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
| |
| Metrics |
threat_severity
|
threat_severity
|
Thu, 18 Dec 2025 08:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A flaw was found in Nodemailer. This vulnerability allows a denial of service (DoS) via a crafted email address header that triggers infinite recursion in the address parser. | |
| Title | Nodemailer: nodemailer: denial of service via crafted email address header | |
| First Time appeared |
Redhat
Redhat acm Redhat ceph Storage Redhat rhdh |
|
| Weaknesses | CWE-703 | |
| CPEs | cpe:/a:redhat:acm:2 cpe:/a:redhat:ceph_storage:8 cpe:/a:redhat:rhdh:1 |
|
| Vendors & Products |
Redhat
Redhat acm Redhat ceph Storage Redhat rhdh |
|
| References |
|
|
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2026-01-08T02:59:52.145Z
Reserved: 2025-12-18T06:54:04.556Z
Link: CVE-2025-14874
Updated: 2025-12-18T14:32:37.484Z
Status : Modified
Published: 2025-12-18T09:15:44.870
Modified: 2026-01-08T03:15:43.190
Link: CVE-2025-14874
OpenCVE Enrichment
No data.
Github GHSA