Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

lestrrat-go — Vulnerabilities & Security Advisories 3

Browse all 3 CVE security advisories affecting lestrrat-go. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Lestrrat-go is a Go library for handling MIME structures and email parsing, commonly used in email processing applications. Historically, it has been susceptible to remote code execution vulnerabilities due to unsafe parsing of complex MIME structures and cross-site scripting flaws through improper input sanitization. The library has also faced privilege escalation issues in certain configurations. While no major public security incidents have been documented, the three CVEs recorded highlight risks in input validation and memory handling. Developers should implement strict input validation and consider sandboxing when processing untrusted email content to mitigate potential exploitation vectors.

Top products by lestrrat-go: jwx

This page lists every published CVE security advisory associated with lestrrat-go. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.