PHP Filter_Var FILTER_VALIDATE_EMAIL Newline Injection Vulnerability

PHP is prone to an email-newline-injection vulnerability because it fails to properly sanitize user-supplied input.

Exploiting this issue may allow a malicious user to create arbitrary email headers, and then create and transmit spam messages from the affected computer.


 

Privacy Statement
Copyright 2010, SecurityFocus