mutt
cpe:2.3:a:mutt:mutt:*:*:*:*:*:*:*
- < 2.3.2
A vulnerability exists in Mutt versions prior to 2.3.2, where the URL decoding function does not properly handle null byte characters. This oversight could potentially lead to unexpected behavior or security issues by allowing null bytes to be embedded in decoded URLs.
The vulnerability could be exploited to inject null byte characters into the URL decoding process, potentially leading to incorrect URL handling or manipulation.
Users can upgrade to Mutt version 2.3.2 or later, where this vulnerability has been addressed.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.