All vulnerabilities

GHSA-p6gq-j5cr-w38f

npm · nodemailer

Summary

Nodemailer: Message-level raw option bypasses disableFileAccess/disableUrlAccess, enabling arbitrary file read and full-response SSRF in the delivered message

References