CVE-2026-57511
Last modified
CVE-2026-57511 is a medium-severity vulnerability rated 6.3/10 on the CVSS scale. SuperPlane before 0.30.0 contains an SMTP header injection vulnerability that allows unauthenticated attackers to inject arbitrary SMTP headers by including CRLF sequences in the event payload title field delivered via webhook. Attackers can manipulate the unsanitized title field passed to the SMTP DATA command to add Bcc recipients for content exfiltration, forge the From address to bypass SPF and DKIM checks, or inject Content-Type and MIME boundary headers to corrupt message bodies for phishing.. EPSS estimates a 0.24% chance of exploitation in the next 30 days.
Description
SuperPlane before 0.30.0 contains an SMTP header injection vulnerability that allows unauthenticated attackers to inject arbitrary SMTP headers by including CRLF sequences in the event payload title field delivered via webhook. Attackers can manipulate the unsanitized title field passed to the SMTP DATA command to add Bcc recipients for content exfiltration, forge the From address to bypass SPF and DKIM checks, or inject Content-Type and MIME boundary headers to corrupt message bodies for phishing.
Metrics
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:L/I:L/A:N
CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:N/VA:N/SC:L/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Weakness Enumeration
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| superplanehq | superplane | < 0.30.0 |
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2026-57511?
How severe is CVE-2026-57511?
How do I fix CVE-2026-57511?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-57494AgenticMail gives AI agents real email addresses and phone n…7.1
- CVE-2026-57495AgenticMail gives AI agents real email addresses and phone n…8.2
- CVE-2026-57498Coolify is an open-source and self-hostable tool for managin…9.6
- CVE-2026-5750An insecure direct object reference (IDOR) vulnerability in …7.6
- CVE-2026-57501Zen is a firefox-based browser. Prior to 1.21.5b, Zen's glan…0
- CVE-2026-57510SuperPlane before 0.27.0 contains a broken object-level auth…8.8
- CVE-2026-57516Ray prior to 2.56.0 contains an unsafe deserialization vulne…8.8
- CVE-2026-57517Control Web Panel before 0.9.8.1225 contains a blind SQL inj…9.8
- CVE-2026-57518Pagekit CMS 1.0.18 contains a privilege escalation vulnerabi…8.8
- CVE-2026-5752Sandbox Escape Vulnerability in Terrarium allows arbitrary c…9.3
- CVE-2026-57520Bitwarden Server before 2026.5.0 contains a privilege escala…7.1
- CVE-2026-57521Bitwarden Server before 2026.5.0 contains a broken access co…5.3
Are you affected by CVE-2026-57511?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
