Strict CRLF check in SMTP protocol #661
Labels
bug
Something isn't working.
ready-for-release
Feature is implemented and available for testing in dev branch. It will be included in the next rele
The
go-smtp
package has released a new version, where strict CRLF check is performed to mitigate an zero-day attack against SMTP known as SMTP Smuggling. I think Maddy should probably update the dependency and (probably) release a new version with the updated dependency.The text was updated successfully, but these errors were encountered: