Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Secure Email Gateway — Vulnerabilities & Security Advisories 32

All 32 CVE vulnerabilities found in Secure Email Gateway, with AI-generated Chinese analysis, references, and POCs.

This page is a vulnerability aggregation resource for the Secure Email Gateway product, focusing on common weakness types associated with email security infrastructure. It compiles security issues reported by various vendors and independent researchers, covering vulnerability data from the early 2010s through the present day. By aggregating these disparate sources into a single interface, the platform ensures comprehensive visibility into the evolving threat landscape targeting email gateways. Users can track vendor advisories to stay informed about patches and mitigations released by major security appliance providers. The interface also allows for a deeper understanding of specific weakness classes, such as injection flaws, authentication bypasses, and cross-site scripting vulnerabilities that frequently affect these systems. Additionally, visitors can look up a product's vulnerability history to analyze trends and assess long-term security stability. This historical context is essential for security teams evaluating potential solutions or auditing their current deployments. The content is organized to facilitate efficient searching by weakness type, vendor, or product version. All listed items are sourced from publicly available security advisories and databases. The goal is to provide a neutral, factual repository that supports risk assessment and decision-making processes without bias. This resource serves as a reference point for security analysts, system administrators, and compliance officers seeking detailed information on email gateway security flaws.

Vendor: Cellopoint

CVE IDTitleCVSSSeverityPublished
CVE-2026-8811 Path traversal in PDF generation module CWE-22--2026-06-18
CVE-2026-44126 Insecure deserialization CWE-502 9.8AICriticalAI2026-05-08
CVE-2026-44125 Missing Authorization in GINAv2 CWE-862 9.8AICriticalAI2026-05-08
CVE-2026-44129 Server-side template injection CWE-1336 9.8AICriticalAI2026-05-08
CVE-2026-44128 Unauthenticated Remote Code Execution CWE-95 9.8AICriticalAI2026-05-08
CVE-2026-44127 Local File Inclusion (LFI) and Arbitrary File Deletion CWE-73 9.1AICriticalAI2026-05-08
CVE-2026-7864 Exposure of Sensitive Information to an Unauthorized Actor CWE-497 7.5AIHighAI2026-05-08
CVE-2026-29136 CA Notification HTML Injection CWE-79 5.4AIMediumAI2026-04-02
CVE-2026-29139 GINA State Confusion Account Takeover CWE-288 9.8AICriticalAI2026-04-02
CVE-2026-29144 Unicode Subject Tags CWE-20 5.3AIMediumAI2026-04-02
CVE-2026-29143 S/MIME Decryption Impersonation CWE-20 8.2AIHighAI2026-04-02
CVE-2026-29138 PGP Decryption Sender LDAP Injection CWE-90 4.3AIMediumAI2026-04-02
CVE-2026-29131 PGP Decryption Recipient LDAP Injection CWE-90 6.5AIMediumAI2026-04-02
CVE-2026-29142 Plaintext secure-mail.html CWE-325 7.5AIHighAI2026-04-02
CVE-2026-29137 Long Subject Untagging CWE-20 5.3AIMediumAI2026-04-02
CVE-2026-29141 Bounded Subject Tag Sanitization CWE-20 5.3AIMediumAI2026-04-02
CVE-2026-29135 Webmail Password Tag Sanitization Bypass CWE-20 8.2AIHighAI2026-04-02
CVE-2026-29134 GINA Domain Switch CWE-807 5.3AIMediumAI2026-04-02
CVE-2026-29140 S/MIME Signature Additional Certificate CWE-295 7.5AIHighAI2026-04-02
CVE-2026-29133 UID Regex Bypass CWE-20 9.1AICriticalAI2026-04-02
CVE-2026-29132 ESWmail-Verify Bypass CWE-306 4.3AIMediumAI2026-04-02
CVE-2026-27441 PDF Password CMDi CWE-78 9.8AICriticalAI2026-03-04
CVE-2026-2748 S/MIME Certificate Subject Whitespace CWE-295 7.5AIHighAI2026-03-04
CVE-2026-27442 zip_attachments Path Traversal CWE-22 7.5AIHighAI2026-03-04
CVE-2026-27445 PGP Signature Reflection CWE-347 7.5AIHighAI2026-03-04
CVE-2026-27444 Header Email Address Parsing CWE-436 9.1AICriticalAI2026-03-04
CVE-2026-2747 PGP Mixed Plaintext and Encrypted Content CWE-200 5.3AIMediumAI2026-03-04
CVE-2026-27443 S/MIME Decryption Tag Sanitization Bypass CWE-20 7.5AIHighAI2026-03-04
CVE-2026-2746 Missing PGP Signature Tag CWE-347 5.3AIMediumAI2026-03-04
CVE-2025-25235 Omnissa Secure Email Gateway (SEG) updates address Server-Side Request Forgery (SSRF) vulnerability CWE-918 8.6 High2025-08-11

All 32 known CVE vulnerabilities affecting Secure Email Gateway with full Chinese analysis, references, and POCs where available.