Back

MEDIUM

Folding email comments of unfoldable characters doesn't preserve parenthesis

Published Jan 20, 2026

Description

When folding a long comment in an email header containing exclusively unfoldable characters, the parenthesis would not be preserved. This could be used for injecting headers into email messages where addresses are user-controlled and not sanitized.

Affected products

Remediation

Red Hat mitigation

Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.

Weaknesses (2)

References (14)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner PSF
Published Jan 20, 2026
Updated Mar 3, 2026
Reserved Oct 7, 2025
CISA Vulnrichment
Updated Jan 21, 2026
NVD
Status Deferred
Modified Jun 17, 2026
Red Hat
Severity Moderate
Public date Jan 20, 2026
ENISA EUVD
Assigner PSF
Published Jan 20, 2026
Updated Mar 3, 2026
Exploited since n/a
EUVD-2025-206306