CVE Published: 07/08/2017 |
CVE Updated: 16/09/2024 |
CVE Year: 2017 Source: apache |
Vendor: Apache Software Foundation |
Product: Apache Commons Email Status : PUBLISHED
CVE-2017-9801 Description
When a call-site passes a subject for an email that contains line-breaks in Apache Commons Email 1.0 through 1.4, the caller can add arbitrary SMTP headers.