Loading
Generated remediation guidance and an executive summary. No account required.
SmarterTools SmarterMail 16.x before build 7866 has stored XSS. The application fails to sanitize email content, thus allowing one to inject HTML and/or JavaScript into a page that will then be processed and stored by the application.
Use CWE-79, Smartertools vendor hub and Smartermail product page to widen CVE-2021-40377 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2025-52691, CVE-2026-24423 and CVE-2026-23760 for nearby disclosures in the same product family.