CVE-2026-29965

HSC MailInspector 5.3.3-7 is vulnerable to Cross Site Scripting (XSS) in the /police/WarningUrlPage.php endpoint due to improper neutralization of user-supplied input that uses alternate or obfuscated JavaScript syntax.

medium 6.1 CVSS 3.1
Published: May 18, 2026
Modified: May 19, 2026
Vendor: Hsclabs
Product: Mailinspector
Versions: 5.3.3-7