aiosmtplib@1.1.0 vulnerabilities

asyncio SMTP client

  • latest version

    4.0.0

  • latest non vulnerable version

  • first published

    8 years ago

  • latest version published

    1 months ago

  • licenses detected

  • Direct Vulnerabilities

    Known vulnerabilities in the aiosmtplib package. This does not include vulnerabilities belonging to this package’s dependencies.

    How to fix?

    Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

    Fix for free
    VulnerabilityVulnerable Version
    • M
    SMTP Injection

    aiosmtplib is an aiosmtplib is an asynchronous SMTP client for use with asyncio.

    Affected versions of this package are vulnerable to SMTP Injection. It is possible to insert an arbitrary SMTP command through the hostname or the source_address field.

    How to fix SMTP Injection?

    Upgrade aiosmtplib to version 1.1.7 or higher.

    [,1.1.7)