CVE-2026-100702 | Nodemailer up to 10.0.1 Array.toString to/cc/bcc stack-based overflow

SecurityVulns

A vulnerability, which was classified as problematic, was found in Nodemailer up to 10.0.1. This affects the function Array.toString. Such manipulation of the argument to/cc/bcc leads to stack-based buffer overflow.

This vulnerability is referenced as CVE-2026-100702. It is possible to launch the attack remotely. No exploit is available.

You should upgrade the affected component.VulDB Recent EntriesRead More