CVE WATCH / VULNERABILITY DETAIL

CVE-2026-82973

CRITICALCVSS 9.4NVD feed

Published 29 September 2026 · tracked since 30 September 2026

Description

Improper neutralization of CRLF sequences in IMAP command construction in psyb0t/docker-mailbox before 0.4.13 allows a remote unauthenticated attacker, when bearer-token authentication is not configured, to inject additional IMAP commands into an authenticated upstream mailbox connection via crafted

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

CVE-2026-82973 — Vulnerability Details | Logic Encoder
CVE WATCH / VULNERABILITY DETAIL

CVE-2026-82973

CRITICALCVSS 9.4NVD feed

Published 29 September 2026 · tracked since 30 September 2026

Description

Improper neutralization of CRLF sequences in IMAP command construction in psyb0t/docker-mailbox before 0.4.13 allows a remote unauthenticated attacker, when bearer-token authentication is not configured, to inject additional IMAP commands into an authenticated upstream mailbox connection via crafted

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

[an error occurred while processing this directive]