CVE-2025-15366

Updated on 20 Jan 2026

Severity

Awaiting Analysis

Details

CVSS score
8.6

Overview

About vulnerability

The imaplib module, when passed a user-controlled command, can have additional commands injected using newlines. Mitigation rejects commands containing control characters.

Details

Affected packages:
python2 @ 2.7.18 (+11 more)
The imaplib module, when passed a user-controlled command, can have additional commands injected using newlines. Mitigation rejects commands containing control characters.

Fixes