๐Ÿ” CVE Alert

CVE-2026-55558

MEDIUM 5.9

aiosmtplib: STARTTLS response injection

CVSS Score
5.9
EPSS Score
0.0%
EPSS Percentile
0th

aiosmtplib is an asynchronous SMTP client for use with asyncio. Prior to 5.1.2, SMTPProtocol.start_tls in src/aiosmtplib/protocol.py consumes the server's 220 response and starts the TLS handshake without clearing SMTPProtocol._buffer. An active network attacker can place attacker-chosen SMTP response lines after the plaintext 220 response in the same network segment. The method then calls loop.start_tls; those bytes survive the transport upgrade and are parsed as the first response from inside the TLS session, desynchronizing subsequent SMTP command and response pairs. Connections using start_tls=True or opportunistic STARTTLS are affected, while connections using use_tls=True are not. This issue is fixed in version 5.1.2.

CWE CWE-74
Vendor cole
Product aiosmtplib
Published Aug 20, 2026
Stay Ahead of the Next One

Get instant alerts for cole aiosmtplib

Be the first to know when new medium vulnerabilities affecting cole aiosmtplib are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N
Attack Vector
Network
Attack Complexity
High
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
None
Integrity
High
Availability
None

Affected Versions

cole / aiosmtplib
< 5.1.2

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
github.com: https://github.com/cole/aiosmtplib/security/advisories/GHSA-vxj7-4xrp-5vr4 github.com: https://github.com/cole/aiosmtplib/commit/9fab7ba1361dbf7622ede1315a24be805cff09c9 github.com: https://github.com/cole/aiosmtplib/releases/tag/v5.1.2