Overview
About vulnerability
In Jakarta Mail 2.0.2 it is possible to preform a SMTP Injection by utilizing the \r and \n UTF-8 characters to separate different messages.Details
- Affected product:
- Eclipse Jetty , Hibernate , Jackson , Spring , angus-activation , angus-core , angus-mail , ant , authentication , cxf , elasticsearch , imap , jakarta.authentication-api , jakarta.mail , jaxb-core , jaxb-ri , logging-log4j2 , logging-mailhandler , mail , metro-saaj , pop3 , smtp , wildfly
- Affected packages:
- hibernate-agroal @ 6.5.3.Final (+2609 more)