Vulnerabilities > Apache > Commons Email > High
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2018-03-20 | CVE-2018-1294 | Improper Input Validation vulnerability in Apache Commons Email If a user of Apache Commons Email (typically an application programmer) passes unvalidated input as the so-called "Bounce Address", and that input contains line-breaks, then the email details (recipients, contents, etc.) might be manipulated. | 7.5 |
2017-08-07 | CVE-2017-9801 | Improper Input Validation vulnerability in Apache Commons Email When a call-site passes a subject for an email that contains line-breaks in Apache Commons Email 1.0 through 1.4, the caller can add arbitrary SMTP headers. | 7.5 |