CVE-2020-28247
12.11.2020, 18:15
The lettre library through 0.10.0-alpha for Rust allows arbitrary sendmail option injection via transport/sendmail/mod.rs.Enginsight
| Vendor | Product | Version |
|---|---|---|
| lettre | lettre | 0.8.0 ≤ 𝑥 ≤ 0.8.3 |
| lettre | lettre | 0.9.0 ≤ 𝑥 ≤ 0.9.5 |
| lettre | lettre | 0.7.0 |
| lettre | lettre | 0.10.0:alpha1 |
| lettre | lettre | 0.10.0:alpha2 |
| lettre | lettre | 0.10.0:alpha3 |
𝑥
= Vulnerable software versions