Email Manipulation Vulnerability in Apache Commons Email by Apache
CVE-2018-1294
What is CVE-2018-1294?
Apache Commons Email is susceptible to manipulation if an application programmer uses unvalidated input for the 'Bounce Address'. This vulnerability allows an attacker to insert line-breaks in the email input, potentially compromising email details, including recipients and content. To address this issue, users are advised to upgrade to Commons-Email 1.5. For those using earlier versions, it is recommended to sanitize inputs by removing any line-break characters from data before passing it to Email.setBounceAddress(String).

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Apache Commons Email versions prior to 1.5
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved