org.apache.commons:commons-email@1.4 vulnerabilities
Apache Commons Email aims to provide an API for sending email. It is built on top of the JavaMail API, which it aims to simplify.
-
latest version
1.5
-
latest non vulnerable version
-
first published
15 years ago
-
latest version published
5 years ago
-
licenses detected
- [0,)
-
package manager
Direct Vulnerabilities
Known vulnerabilities in the org.apache.commons:commons-email package. This does not include vulnerabilities belonging to this package’s dependencies.
Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.Vulnerability | Vulnerable Version |
---|---|
Affected versions of How to fix Information Exposure? Upgrade |
(,1.5)
|
Affected versions of the package are vulnerable to SMTP Header Injection. When a call-site passes a subject for an email that contains line-breaks in Apache Commons Email 1.0 through 1.4, the caller can add arbitrary SMTP headers. How to fix SMTP Header Injection? Upgrade |
(,1.5)
|