CVE-2026-51144

Medium severity, CVSS 6.1. EPSS: 0.4% chance of exploitation in the next 30 days.

Cross Site Scripting vulnerability in Soliton Systems MailZen Management Protal v.2.62, v.2.63 allows a remote attacker to execute arbitrary code via the Role Name, First Name, Last Name, and Username fields.

Published 2026-08-04. Last modified 2026-08-31.