CVE-2023-38191: Superwebmailer

Medium severity, CVSS 6.1. EPSS: 0.5% chance of exploitation in the next 30 days.

An issue was discovered in SuperWebMailer 9.00.0.01710. It allows spamtest_external.php XSS via a crafted filename.

Affected products

Published 2023-10-20. Last modified 2026-06-17.