Description
CRLF injection vulnerability in the send email functionality in dotCMS before 3.3.2 allows remote attackers to inject arbitrary email headers via CRLF sequences in the subject.
Remediation
References
Related Vulnerabilities
WordPress Plugin WPML (WordPress Multilingual) Cross-Site Request Forgery (4.3.6)
Django Allocation of Resources Without Limits or Throttling Vulnerability (CVE-2019-6975)
Grafana Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2022-21703)
Tornado Observable Differences in Behavior to Error Inputs Vulnerability (CVE-2014-9720)