CVE-2026-23619 | GFI MailEssentials AI up to 22.3 Management Interface general.aspx ctl00$ContentPlaceHolder1$Pv3$txtDescription cross site scripting
A vulnerability, which was classified as problematic, has been found in GFI MailEssentials AI up to 22.3. The impacted element is an unknown function of the file /MailEssentials/pages/MailSecurity/general.aspx of the component Management Interface. The manipulation of the argument ctl00$ContentPlaceHolder1$Pv3$txtDescription leads to cross site scripting.
This vulnerability is documented as CVE-2026-23619. The attack can be initiated remotely. There is not any exploit available.
It is advisable to upgrade the affected component.