CVE-2019-7211: SmarterTools SmarterMail

Medium severity, CVSS 6.1. EPSS: 0.7% chance of exploitation in the next 30 days.

SmarterTools SmarterMail 16.x before build 6995 has stored XSS. JavaScript code could be executed on the application by opening a malicious email or when viewing a malicious file attachment.

Affected products

  • SmarterTools SmarterMail: from 16.0.6345, before 16.3.6955 (fixed in 16.3.6955)

Published 2019-04-24. Last modified 2026-06-17.