VYPR

mail_send Plugin

by Maxsite

CVEs (1)

  • CVE-2026-7013LowApr 26, 2026
    risk 0.09cvss 2.4epss 0.00

    A security vulnerability has been detected in MaxSite CMS up to 109.3. Affected by this issue is some unknown functionality of the component mail_send Plugin. The manipulation of the argument f_subject/f_files/f_from leads to cross site scripting. The attack can be initiated…