Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Secure Email Gateway — Vulnerabilities & Security Advisories 32

All 32 CVE vulnerabilities found in Secure Email Gateway, with AI-generated Chinese analysis, references, and POCs.

This page provides a comprehensive vulnerability aggregation view for the Secure Email Gateway, focusing on common weakness classifications and associated security tags. It collects detailed records of identified security flaws, including buffer overflows, injection flaws, and configuration errors, covering data from the past five years to ensure historical context and trend analysis are available for security professionals. Users can utilize this resource to track vendor advisories as they are released, gaining insight into the remediation timelines and patch availability for critical issues. Additionally, the page allows analysts to understand the prevalence and characteristics of specific weakness classes within email infrastructure products, facilitating better risk assessment and mitigation strategies. By reviewing a product's vulnerability history, security teams can identify recurring patterns, evaluate the effectiveness of past fixes, and anticipate potential future risks. This consolidated view supports informed decision-making for patch management and security posture improvements, enabling organizations to prioritize their efforts based on the severity and exploitability of known vulnerabilities. The information presented is derived from official vendor notifications, independent security research, and widely recognized vulnerability databases, ensuring accuracy and reliability for enterprise security operations.

Vendor: Cellopoint

CVE IDTitleCVSSSeverityPublished
CVE-2026-8811 Path traversal in PDF generation module CWE-22--2026-06-18
CVE-2026-44126 Insecure deserialization CWE-502 9.8AICriticalAI2026-05-08
CVE-2026-44125 Missing Authorization in GINAv2 CWE-862 9.8AICriticalAI2026-05-08
CVE-2026-44129 Server-side template injection CWE-1336 9.8AICriticalAI2026-05-08
CVE-2026-44128 Unauthenticated Remote Code Execution CWE-95 9.8AICriticalAI2026-05-08
CVE-2026-44127 Local File Inclusion (LFI) and Arbitrary File Deletion CWE-73 9.1AICriticalAI2026-05-08
CVE-2026-7864 Exposure of Sensitive Information to an Unauthorized Actor CWE-497 7.5AIHighAI2026-05-08
CVE-2026-29136 CA Notification HTML Injection CWE-79 5.4AIMediumAI2026-04-02
CVE-2026-29139 GINA State Confusion Account Takeover CWE-288 9.8AICriticalAI2026-04-02
CVE-2026-29144 Unicode Subject Tags CWE-20 5.3AIMediumAI2026-04-02
CVE-2026-29143 S/MIME Decryption Impersonation CWE-20 8.2AIHighAI2026-04-02
CVE-2026-29138 PGP Decryption Sender LDAP Injection CWE-90 4.3AIMediumAI2026-04-02
CVE-2026-29131 PGP Decryption Recipient LDAP Injection CWE-90 6.5AIMediumAI2026-04-02
CVE-2026-29142 Plaintext secure-mail.html CWE-325 7.5AIHighAI2026-04-02
CVE-2026-29137 Long Subject Untagging CWE-20 5.3AIMediumAI2026-04-02
CVE-2026-29141 Bounded Subject Tag Sanitization CWE-20 5.3AIMediumAI2026-04-02
CVE-2026-29135 Webmail Password Tag Sanitization Bypass CWE-20 8.2AIHighAI2026-04-02
CVE-2026-29134 GINA Domain Switch CWE-807 5.3AIMediumAI2026-04-02
CVE-2026-29140 S/MIME Signature Additional Certificate CWE-295 7.5AIHighAI2026-04-02
CVE-2026-29133 UID Regex Bypass CWE-20 9.1AICriticalAI2026-04-02
CVE-2026-29132 ESWmail-Verify Bypass CWE-306 4.3AIMediumAI2026-04-02
CVE-2026-27441 PDF Password CMDi CWE-78 9.8AICriticalAI2026-03-04
CVE-2026-2748 S/MIME Certificate Subject Whitespace CWE-295 7.5AIHighAI2026-03-04
CVE-2026-27442 zip_attachments Path Traversal CWE-22 7.5AIHighAI2026-03-04
CVE-2026-27445 PGP Signature Reflection CWE-347 7.5AIHighAI2026-03-04
CVE-2026-27444 Header Email Address Parsing CWE-436 9.1AICriticalAI2026-03-04
CVE-2026-2747 PGP Mixed Plaintext and Encrypted Content CWE-200 5.3AIMediumAI2026-03-04
CVE-2026-27443 S/MIME Decryption Tag Sanitization Bypass CWE-20 7.5AIHighAI2026-03-04
CVE-2026-2746 Missing PGP Signature Tag CWE-347 5.3AIMediumAI2026-03-04
CVE-2025-25235 Omnissa Secure Email Gateway (SEG) updates address Server-Side Request Forgery (SSRF) vulnerability CWE-918 8.6 High2025-08-11

All 32 known CVE vulnerabilities affecting Secure Email Gateway with full Chinese analysis, references, and POCs where available.