CVE Database
/

CVE-2026-42507

Back to search

CVE-2026-42507

Published: Jun 2, 2026

Modified: Jun 3, 2026

PUBLISHED

Description

When returning errors, functions in the net/textproto package would include its input as part of the error. This might allow an attacker to inject misleading content to errors that are printed or logged.

VendorProductVersions

Go standard library

net/textproto

affected
0 - < 1.25.11
affected
1.26.0-0 - < 1.26.4

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now
CVE-2026-42507 - Security Vulnerability | QwikSec