XSS Vulnerability in SurgeMail v78c2 Could Allow Arbitrary JavaScript Code Execution
CVE-2024-11990
4.6MEDIUM
What is CVE-2024-11990?
A Cross-Site Scripting (XSS) vulnerability in SurgeMail v78c2 could allow an attacker to execute arbitrary JavaScript code via an elaborate payload injected into vulnerable parameters.
Affected Version(s)
SurgeMail 78c2