Zalify operates a focused email application portfolio centered on the Easy Email product, where the observed vulnerability pattern reflects typical web application risks around input handling and output encoding. The recurring weakness class—cross-site scripting during dynamic page generation—is characteristic of email client interfaces that render user-controlled content. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Zalify over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-39683MEDIUM Cross Site Scripting (XSS) vulnerability in EasyEmail v.4.12.2 and before allows a local attacker to execute arbitrary code via the user input parameter(s). NOTE: Researcher claims | Feb 9, 2024 | 6.1 | 18 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Zalify.
Media articles that mention a CVE ID that affects a product developed by Zalify — matched by CVE ID, not by vendor name.