CVE-2023-52354

Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggling') in go/github.com/albertito/chasquid

Identifiers

GHSA-g4x3-mfpj-f335, CVE-2023-52354

Package Slug

go/github.com/albertito/chasquid

Vulnerability

Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggling')

Description

chasquid before 1.13 allows SMTP smuggling because LF-terminated lines are accepted.

Affected Versions

All versions before 1.13

Solution

Upgrade to version 1.13 or above.

Last Modified

2024-01-30

source