Description
TYPO3 before 4.2.13, 4.3.x before 4.3.4 and 4.4.x before 4.4.1 allows information disclosure in the mail header of the HTML mailing API.
Remediation
References
Related Vulnerabilities
Drupal Incorrect Authorization Vulnerability (CVE-2017-6377)
WordPress Plugin WordPress-Amazon-Associate (WPAA) Cross-Site Scripting (2.0)
IBM WebSEAL URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2019-4153)
WordPress Plugin Buddypress Component Stats Local File Inclusion (1.0)