CVE-2026-48539 | GFI Archiver up to 15.12 MailInsights MailInsights.aspx ReportScheduling.btnSaveReport_Click report name cross site scripting
A vulnerability described as problematic has been identified in GFI Archiver up to 15.12. Affected is the function ReportScheduling.btnSaveReport_Click of the file /Archiver/MailInsights.aspx of the component MailInsights. Executing a manipulation of the argument report name can lead to cross site scripting.
The identification of this vulnerability is CVE-2026-48539. The attack may be launched remotely. There is no exploit available.
Upgrading the affected component is recommended.VulDB Recent EntriesRead More