All 2 CVE vulnerabilities found in Gravity SMTP, with AI-generated Chinese analysis, references, and POCs.
Vendor: RocketGenius
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-4162 | Gravity SMTP <= 2.1.4 - Missing Authorization to Authenticated (Subscriber+) Plugin Uninstall CWE-862 | 7.1 | High | 2026-04-10 |
| CVE-2026-4020 | Gravity SMTP <= 2.1.4 - Unauthenticated Sensitive Information Exposure via REST API CWE-200 | 7.5 | High | 2026-03-31 |
All 2 known CVE vulnerabilities affecting Gravity SMTP with full Chinese analysis, references, and POCs where available.