CVE-2026-101280 | Trusted Domain Project OpenDMARC up to 1.4.2 Multi-Record Set opendmarc_policy_query_dmarc authentication spoofing

SecurityVulns

A vulnerability labeled as critical has been found in Trusted Domain Project OpenDMARC up to 1.4.2. Affected is the function opendmarc_policy_query_dmarc of the component Multi-Record Set Handler. The manipulation results in authentication bypass by spoofing.

This vulnerability is identified as CVE-2026-101280. The attack can be executed remotely. Additionally, an exploit exists.

The vendor was contacted early about this disclosure but did not respond in any way.VulDB Recent EntriesRead More