Overview
About vulnerability
In Jakarta Mail 2.0.2 it is possible to preform a SMTP Injection by utilizing the \r and \n UTF-8 characters to separate different messages.Details
- Affected product:
- Apache CXF , Apache Log4j , Eclipse Jetty , Hibernate , Jackson , Spring , Wildfly , angus-activation , angus-core , angus-mail , ant , authentication , elasticsearch , imap , jakarta.authentication-api , jakarta.mail , jaxb-core , jaxb-ri , logging-mailhandler , mail , metro-saaj , pop3 , smtp , wildfly
- Affected packages:
- hibernate-jcache @ 6.5.3.Final (+5272 more)