Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Haraka affected by DoS via `__proto__` email header
Vulnerability Description
Haraka is a Node.js mail server. Prior to version 3.1.4, sending an email with __proto__: as a header name crashes the Haraka worker process. This issue has been patched in version 3.1.4.
CVSS Information
N/A
Vulnerability Type
未捕获的异常
Vulnerability Title
Haraka 安全漏洞
Vulnerability Description
Haraka是Haraka开源的一款SMTP电子邮件服务器。 Haraka 3.1.4之前版本存在安全漏洞,该漏洞源于发送包含__proto__:作为标头名称的电子邮件会导致工作进程崩溃。
CVSS Information
N/A
Vulnerability Type
N/A