Lucene search

K
osvGoogleOSV:GHSA-JW7R-RXFF-GV24
HistoryFeb 27, 2024 - 6:31 p.m.

Apache James MIME4J improper input validation vulnerability

2024-02-2718:31:02
Google
osv.dev
34
apache james
mime4j library
input validation
header injection
dom
composing message
security vulnerability
software

AI Score

7.1

Confidence

High

EPSS

0

Percentile

9.0%

Improper input validation allows for header injection in MIME4J library when using MIME4J DOM for composing message.
This can be exploited by an attacker to add unintended headers to MIME messages.

AI Score

7.1

Confidence

High

EPSS

0

Percentile

9.0%