Medium
CVSS 4.8
Overview
Cross-site scripting (XSS) vulnerability in User Policy editor in Synology MailPlus Server before 1.4.0-0415 allows remote authenticated users to inject arbitrary HTML via the name parameter.
Cross-site scripting (XSS) vulnerability in User Policy editor in Synology MailP...
Cross-site scripting (XSS) vulnerability in User Policy editor in Synology MailPlus Server before 1.4.0-0415 allows remote authenticated users to inject arbitrary HTML via the name parameter.
This vulnerability is rated 🟡 MEDIUM.
Recommended actions: