Feb. 2, 2026
1
0
[CVE-2026-1299] email BytesGenerator header injection due to unquoted newlines
by Seth Larson Jan. 23, 2026
by Seth Larson Jan. 23, 2026
Jan. 23, 2026
1
0
[CVE-2025-12781] base64.b64decode() always accepts "+/" characters, despite setting altchars
by Seth Larson Jan. 21, 2026
by Seth Larson Jan. 21, 2026
Jan. 21, 2026
1
0
1
0
Jan. 20, 2026
1
0
Jan. 20, 2026
1
0
Jan. 20, 2026
1
0
Title: [CVE-2026-0865] wsgiref.headers.Headers allows header newline injection
by Seth Larson Jan. 20, 2026
by Seth Larson Jan. 20, 2026
Jan. 20, 2026
1
0
[CVE-2025-11468] Folding email comments of unfoldable characters doesn't preserve parenthesis
by Seth Larson Jan. 20, 2026
by Seth Larson Jan. 20, 2026
Jan. 20, 2026
1
0
Dec. 3, 2025
1
0