Описание
Improper Input Validation in Apache Commons Email
When a call-site passes a subject for an email that contains line-breaks in Apache Commons Email 1.0 through 1.4, the caller can add arbitrary SMTP headers.
Пакеты
Наименование
org.apache.commons:commons-email
maven
Затронутые версииВерсия исправления
>= 1.0, <= 1.4
1.5
Связанные уязвимости
CVSS3: 7.5
nvd
больше 8 лет назад
When a call-site passes a subject for an email that contains line-breaks in Apache Commons Email 1.0 through 1.4, the caller can add arbitrary SMTP headers.
CVSS3: 7.5
debian
больше 8 лет назад
When a call-site passes a subject for an email that contains line-brea ...