CVE-2025-63498
alinto SOGo 5.12.3 is vulnerable to Cross Site Scripting (XSS) via the "userName" parameter.
alinto SOGo 5.12.3 is vulnerable to Cross Site Scripting (XSS) via the "userName" parameter.
MEDIUM · CVSS 6.1
EPSS 0.00062
Schedule remediation
- Public exploit or PoC is available
Sigma rules0
YARA rules0