A vulnerability in the eml_parser Python module, used for parsing eml files, can cause high CPU usage and service-level outages when processing specially crafted EML files with deeply nested parentheses in Received: headers. This issue is fixed in version 3.0.2. The vulnerability can cause high CPU usage and worker latency when processing specially crafted EML files. Defenders responsible for systems usin [truncated]
A vulnerability in eml_parser, a Python module for parsing eml files, can cause a RecursionError when handling deeply nested CFWS comment constructs in email headers. This issue, fixed in version 3.0.2, can disrupt SOC pipelines processing untrusted EML files. The vulnerability arises from the use of email.utils.getaddresses() to parse address-bearing e-mail headers, which does not handle deeply nested co [truncated]
CVE-2026-55618 is a vulnerability in the eml_parser Python module that could cause email security gateways and SOC pipelines to miss potentially malicious URLs. The issue is fixed in version 3.0.2. This vulnerability allows malicious links to bypass inspection due to improper validation of encoded URLs, potentially leading to missed indicators of compromise. Defenders should assess their exposure and veri [truncated]
A medium-severity vulnerability in the eml_parser Python library allows attackers to cause denial of service through recursive parsing of nested message/rfc822 attachments. The issue stems from unconditional recursion in EmlParser.get_raw_body_text() without depth limiting, enabling a 12 KB crafted EML file with approximately 120 nested parts to trigger an unhandled RecursionError and crash parsing worker [truncated]