Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:7657
HistoryOct 30, 2018 - 6:51 a.m.

Information Disclosure

2018-10-3006:51:38
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
6

0.002 Low

EPSS

Percentile

58.5%

htmlcleaner is vulnerable to information disclosure. Multiple race conditions in src/main/java/org/htmlcleaner/HtmlCleaner.java, when performing rapid mail-sending or draft-saving operations, allow a remote authenticated attacker to read private e-mails of other users by leveraging on the lack of thread safety.

CPENameOperatorVersion
htmlcleanerle2.5

0.002 Low

EPSS

Percentile

58.5%

Related for VERACODE:7657