Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

msrc логотип

CVE-2026-42507

Опубликовано: 09 июн. 2026
Источник: msrc
CVSS3: 5.3
EPSS Низкий

Описание

Arbitrary inputs are included in errors without any escaping in net/textproto

Обновления

ПродуктСтатьяОбновление
azl3 golang 1.26.4-3 on Azure Linux 3.0
-
azl3 golang 1.26.3-1 on Azure Linux 3.0
-
azl3 golang 1.26.5-2 on Azure Linux 3.0
-
azl3 golang 1.27.0-1 on Azure Linux 3.0
azl3 golang 1.27.1-1 on Azure Linux 3.0

Показывать по

EPSS

Процентиль: 30%
0.0037
Низкий

5.3 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.3
ubuntu
3 месяца назад

When returning errors, functions in the net/textproto package would include its input as part of the error. This might allow an attacker to inject misleading content to errors that are printed or logged.

CVSS3: 5.3
redhat
3 месяца назад

When returning errors, functions in the net/textproto package would include its input as part of the error. This might allow an attacker to inject misleading content to errors that are printed or logged.

CVSS3: 5.3
nvd
3 месяца назад

When returning errors, functions in the net/textproto package would include its input as part of the error. This might allow an attacker to inject misleading content to errors that are printed or logged.

CVSS3: 5.3
debian
3 месяца назад

When returning errors, functions in the net/textproto package would in ...

rocky
3 месяца назад

Moderate: golang security, bug fix, and enhancement update

EPSS

Процентиль: 30%
0.0037
Низкий

5.3 Medium

CVSS3