Stored DOM XSS in Email Body of SmarterMail (CVE-2023-48115)
PreviousStored XSS in Email Body of SmarterMail (CVE-2023-48114)NextStored XSS in Calendar component of SmarterMail (CVE-2023-48116)
Last updated
Last updated
07/11/2023: Issues were reported to the vendor
29/11/2023: A BETA version was released
05/12/2023: I tested the BETA version and confirmed issues were fixed
13/12/2023: A patch (Build 8747) was released
18/12/2023: Public disclosure