CVE-2025-30090 | SquirrelMail up to 1.4.23-svn-20250401/1.5.2-svn-20250401 E-Mail Header mime.php encoded cross site scripting (EUVD-2025-9540)
A vulnerability, which was classified as problematic, was found in SquirrelMail up to 1.4.23-svn-20250401/1.5.2-svn-20250401. Affected is an unknown function of the file mime.php of the component E-Mail Header Handler. The manipulation of the argument encoded leads to cross site scripting.
This vulnerability is traded as CVE-2025-30090. It is possible to launch the attack remotely. There is no exploit available.