Medium
CVSS 5.0
Overview
Pine 4.2.1 through 4.4.4 puts Unix usernames and/or uid into Sender: and X-Sender: headers, which could allow remote attackers to obtain sensitive information.
Pine 4.2.1 through 4.4.4 puts Unix usernames and/or uid into Sender: and X-Sende...
Pine 4.2.1 through 4.4.4 puts Unix usernames and/or uid into Sender: and X-Sender: headers, which could allow remote attackers to obtain sensitive information.
This vulnerability is rated 🟡 MEDIUM.
Recommended actions: