CVE-2026-77352 | ellite Wallos up to 4.0.0 Email Notification Settings saveemailnotifications.php smtpAddress server-side request forgery
A vulnerability was found in ellite Wallos up to 4.0.0 and classified as problematic. The impacted element is an unknown function of the file endpoints/notifications/saveemailnotifications.php of the component Email Notification Settings. Executing a manipulation of the argument smtpAddress can lead to server-side request forgery.
This vulnerability is tracked as CVE-2026-77352. The attack can be launched remotely. No exploit exists.
It is suggested to upgrade the affected component.VulDB Recent EntriesRead More