Back to search
CVE-2026-3468
Published: Mar 31, 2026
Modified: Mar 31, 2026
PUBLISHED
Description
A stored Cross-Site Scripting (XSS) vulnerability has been identified in the SonicWall Email Security appliance due to improper neutralization of user-supplied input during web page generation, allowing a remote authenticated attacker as admin user to potentially execute arbitrary JavaScript code.
| Vendor | Product | Versions |
|---|---|---|
SonicWall | Email Security | affected 10.0.34.8215 and earlier versionsaffected 10.0.34.8223 and earlier versions |
Weaknesses (CWE)
References
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now