CVE-2024-48906: Sematell Replyone

Medium severity, CVSS 6.1. EPSS: 0.3% chance of exploitation in the next 30 days.

Sematell ReplyOne 7.4.3.0 allows XSS via a ReplyDesk e-mail attachment name.

Affected products

Published 2025-05-01. Last modified 2026-06-17.