Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 82

Количество 82

github логотип

GHSA-g82h-mgfp-jx8g

6 месяцев назад

The poplib module, when passed a user-controlled command, can have additional commands injected using newlines. Mitigation rejects commands containing control characters.

EPSS: Низкий
fstec логотип

BDU:2026-05131

7 месяцев назад

Уязвимость модуля poplib интерпретатора языка программирования Python, позволяющая нарушителю выполнить произвольный код

CVSS3: 5.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:1062-1

4 месяца назад

Security update for python310

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:1117-1

4 месяца назад

Security update for python311

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:1107-1

4 месяца назад

Security update for python312

EPSS: Низкий
ubuntu логотип

CVE-2026-1299

6 месяцев назад

The email module, specifically the "BytesGenerator" class, didn’t properly quote newlines for email headers when serializing an email message allowing for header injection when an email is serialized. This is only applicable if using "LiteralHeader" writing headers that don't respect email folding rules, the new behavior will reject the incorrectly folded headers in "BytesGenerator".

EPSS: Низкий
redhat логотип

CVE-2026-1299

6 месяцев назад

The email module, specifically the "BytesGenerator" class, didn’t properly quote newlines for email headers when serializing an email message allowing for header injection when an email is serialized. This is only applicable if using "LiteralHeader" writing headers that don't respect email folding rules, the new behavior will reject the incorrectly folded headers in "BytesGenerator".

CVSS3: 7.1
EPSS: Низкий
nvd логотип

CVE-2026-1299

6 месяцев назад

The email module, specifically the "BytesGenerator" class, didn’t properly quote newlines for email headers when serializing an email message allowing for header injection when an email is serialized. This is only applicable if using "LiteralHeader" writing headers that don't respect email folding rules, the new behavior will reject the incorrectly folded headers in "BytesGenerator".

EPSS: Низкий
debian логотип

CVE-2026-1299

6 месяцев назад

The email module, specifically the "BytesGenerator" class, didn\u2019 ...

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:1349-1

4 месяца назад

Security update for python311

EPSS: Низкий
ubuntu логотип

CVE-2026-0865

6 месяцев назад

User-controlled header names and values containing newlines can allow injecting HTTP headers.

EPSS: Низкий
redhat логотип

CVE-2026-0865

6 месяцев назад

User-controlled header names and values containing newlines can allow injecting HTTP headers.

CVSS3: 4.5
EPSS: Низкий
nvd логотип

CVE-2026-0865

6 месяцев назад

User-controlled header names and values containing newlines can allow injecting HTTP headers.

EPSS: Низкий
debian логотип

CVE-2026-0865

6 месяцев назад

User-controlled header names and values containing newlines can allow ...

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:1090-1

4 месяца назад

Security update for python3

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0897-1

5 месяцев назад

Security update for python3

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0891-1

5 месяцев назад

Security update for python

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0884-1

5 месяцев назад

Security update for python36

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0873-1

5 месяцев назад

Security update for python

EPSS: Низкий
github логотип

GHSA-jh94-8q48-f3m3

6 месяцев назад

The email module, specifically the "BytesGenerator" class, didn’t properly quote newlines for email headers when serializing an email message allowing for header injection when an email is serialized. This is only applicable if using "LiteralHeader" writing headers that don't respect email folding rules, the new behavior will reject the incorrectly folded headers in "BytesGenerator".

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-g82h-mgfp-jx8g

The poplib module, when passed a user-controlled command, can have additional commands injected using newlines. Mitigation rejects commands containing control characters.

0%
Низкий
6 месяцев назад
fstec логотип
BDU:2026-05131

Уязвимость модуля poplib интерпретатора языка программирования Python, позволяющая нарушителю выполнить произвольный код

CVSS3: 5.5
0%
Низкий
7 месяцев назад
suse-cvrf логотип
SUSE-SU-2026:1062-1

Security update for python310

4 месяца назад
suse-cvrf логотип
SUSE-SU-2026:1117-1

Security update for python311

4 месяца назад
suse-cvrf логотип
SUSE-SU-2026:1107-1

Security update for python312

4 месяца назад
ubuntu логотип
CVE-2026-1299

The email module, specifically the "BytesGenerator" class, didn’t properly quote newlines for email headers when serializing an email message allowing for header injection when an email is serialized. This is only applicable if using "LiteralHeader" writing headers that don't respect email folding rules, the new behavior will reject the incorrectly folded headers in "BytesGenerator".

1%
Низкий
6 месяцев назад
redhat логотип
CVE-2026-1299

The email module, specifically the "BytesGenerator" class, didn’t properly quote newlines for email headers when serializing an email message allowing for header injection when an email is serialized. This is only applicable if using "LiteralHeader" writing headers that don't respect email folding rules, the new behavior will reject the incorrectly folded headers in "BytesGenerator".

CVSS3: 7.1
1%
Низкий
6 месяцев назад
nvd логотип
CVE-2026-1299

The email module, specifically the "BytesGenerator" class, didn’t properly quote newlines for email headers when serializing an email message allowing for header injection when an email is serialized. This is only applicable if using "LiteralHeader" writing headers that don't respect email folding rules, the new behavior will reject the incorrectly folded headers in "BytesGenerator".

1%
Низкий
6 месяцев назад
debian логотип
CVE-2026-1299

The email module, specifically the "BytesGenerator" class, didn\u2019 ...

1%
Низкий
6 месяцев назад
suse-cvrf логотип
SUSE-SU-2026:1349-1

Security update for python311

4 месяца назад
ubuntu логотип
CVE-2026-0865

User-controlled header names and values containing newlines can allow injecting HTTP headers.

0%
Низкий
6 месяцев назад
redhat логотип
CVE-2026-0865

User-controlled header names and values containing newlines can allow injecting HTTP headers.

CVSS3: 4.5
0%
Низкий
6 месяцев назад
nvd логотип
CVE-2026-0865

User-controlled header names and values containing newlines can allow injecting HTTP headers.

0%
Низкий
6 месяцев назад
debian логотип
CVE-2026-0865

User-controlled header names and values containing newlines can allow ...

0%
Низкий
6 месяцев назад
suse-cvrf логотип
SUSE-SU-2026:1090-1

Security update for python3

1%
Низкий
4 месяца назад
suse-cvrf логотип
SUSE-SU-2026:0897-1

Security update for python3

1%
Низкий
5 месяцев назад
suse-cvrf логотип
SUSE-SU-2026:0891-1

Security update for python

1%
Низкий
5 месяцев назад
suse-cvrf логотип
SUSE-SU-2026:0884-1

Security update for python36

1%
Низкий
5 месяцев назад
suse-cvrf логотип
SUSE-SU-2026:0873-1

Security update for python

1%
Низкий
5 месяцев назад
github логотип
GHSA-jh94-8q48-f3m3

The email module, specifically the "BytesGenerator" class, didn’t properly quote newlines for email headers when serializing an email message allowing for header injection when an email is serialized. This is only applicable if using "LiteralHeader" writing headers that don't respect email folding rules, the new behavior will reject the incorrectly folded headers in "BytesGenerator".

1%
Низкий
6 месяцев назад

Уязвимостей на страницу