CVE-2026-101281High· 7.3▾ TwilightA flaw has been found in Trusted Domain Project OpenDMARC up to 1.4.2. Affected by this vulnerability is the function opendmarc_sp2_find_mailfrom_domain of the file libopendmarc/opendmarc_spf.c of the component SPF Macro Handler. This ma…
▾ Twilight zone — High severity, or a signal on a lesser flaw
impact 40.2 · likelihood 0 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
A flaw has been found in Trusted Domain Project OpenDMARC up to 1.4.2. Affected by this vulnerability is the function opendmarc_sp2_find_mailfrom_domain of the file libopendmarc/opendmarc_spf.c of the component SPF Macro Handler. This manipulation causes improper authentication. The attack is possible to be carried out remotely. The exploit has been published and may be used. Patch name: c48a74c758677fc5272a73eff15ffdbf8afda1a6. Applying a patch is the recommended action to fix this issue.
Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
Connected by shared product, vendor, weakness, or advisory.
CVE-2026-101280High· 7.3A vulnerability was detected in Trusted Domain Project OpenDMARC up to 1.4.2
CVE-2026-101279Medium· 6.5A security vulnerability has been detected in Trusted Domain Project OpenDMARC up to 1.4.2
CVE-2026-101278Medium· 4.3A weakness has been identified in Trusted Domain Project OpenDMARC up to 1.4.2
CVE-2026-101017Medium· 6.5A vulnerability was found in Trusted Domain Project OpenDMARC up to 1.4.2
CVE-2026-101014High· 7.3A vulnerability was detected in Trusted Domain Project OpenDMARC up to 1.4.2
CVE-2026-101015High· 7.3A flaw has been found in Trusted Domain Project OpenDMARC up to 1.4.2