在 Trusted Domain Project 的 OpenDMARC 1.4.2 及更早版本中发现了一个漏洞。受影响的组件是 SPF 宏处理器(SPF Macro Handler)中的 文件里的 函数。该缺陷会导致身份验证不正确。攻击者可远程利用此漏洞进行攻击。目前,该漏洞的利用代码已被公开,可能存在被实际使用的风险。补丁标识为:c48a74c758677fc5272a73eff15ffdbf8afda1a6。建议尽快应用该补丁以修复此问题。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Trusted Domain Project | OpenDMARC | 1.4.0 |
cpe:2.3:a:trusted_domain_project:opendmarc:*:*:*:*:*:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-101280 | 7.3 HIGH | Trusted Domain Project OpenDMARC Multi-Record Set opendmarc_policy_query_dmarc authenticat |
| CVE-2026-101279 | 6.5 MEDIUM | Trusted Domain Project OpenDMARC opendmarc_policy.c integer overflow |
| CVE-2026-101278 | 4.3 MEDIUM | Trusted Domain Project OpenDMARC PSL Wildcard opendmarc_tld.c : opendmarc_get_tld origin v |
No comments yet