CVE-2026-51144
ANALYSIS PENDINGSoliton MailZen 2.62-2.63: Stored XSS via Role, First/Last Name, Username Fields
Title source: llmDescription
Cross Site Scripting vulnerability in Soliton Systems MailZen Management Protal v.2.62, v.2.63 allows a remote attacker to execute arbitrary code via the Role Name, First Name, Last Name, and Username fields.
References (1)
Core 1
Scores
EPSS
0.0021
EPSS Percentile
11.8%
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
no
Technical Impact
partial
Details
Status
published
Published
Aug 04, 2026
Tracked Since
Aug 05, 2026