CVE-2023-38194: Superwebmailer

Medium severity, CVSS 6.1. EPSS: 1.1% chance of exploitation in the next 30 days.

An issue was discovered in SuperWebMailer 9.00.0.01710. It allows keepalive.php XSS via a GET parameter.

Affected products

Published 2023-10-21. Last modified 2026-06-17.