MEDIUM 4.0 NVD
CVE-2026-94057
Exim before 4.100.1 allows SMTP smuggling in which the received message does not match any sent message, and instead depends on crafted data sent after a reject
Exim before 4.100.1 allows SMTP smuggling in which the received message does not match any sent message, and instead depends on crafted data sent after a rejection during DATA processing.
References
This medium severity vulnerability with a CVSS score of 4.0 was published on 2026-09-19 via NVD.
vulnfeed aggregates 14150 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.