A stored Cross-Site Scripting (XSS) vulnerability has been identified in the SonicWall Email Security appliance due to improper neutralization of user-supplied input during web page generation, allowing a remote authenticated attacker as admin user to potentially execute arbitrary JavaScript code.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Wed, 01 Apr 2026 02:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A stored Cross-Site Scripting (XSS) vulnerability has been identified in the SonicWall Email Security appliance due to improper neutralization of user-supplied input during web page generation, allowing a remote authenticated attacker as admin user to potentially execute arbitrary JavaScript code. | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: sonicwall
Published:
Updated: 2026-03-31T20:35:38.252Z
Reserved: 2026-03-03T09:59:57.366Z
Link: CVE-2026-3468
Updated: 2026-03-31T20:35:34.532Z
Status : Received
Published: 2026-03-31T21:16:32.950
Modified: 2026-03-31T21:16:32.950
Link: CVE-2026-3468
No data.
OpenCVE Enrichment
No data.
Weaknesses