Email Security

SonicWall · 13 CVEs

CVE-2026-66150
HIGH

Improper Control of Generation of Code ('Code Injection') Vulnerability in the SonicWall Email Security appliance allow…

Aug 11, 2026

CVE-2026-66149
HIGH

Improper Control of Generation of Code ('Code Injection') Vulnerability in the SonicWall Email Security appliance allow…

Aug 11, 2026

CVE-2026-3470
LOW

A vulnerability exists in the SonicWall Email Security appliance due to improper input sanitization that may lead to da…

Mar 31, 2026

CVE-2026-3469
LOW

A denial-of-service (DoS) vulnerability exists due to improper input validation in the SonicWall Email Security applian…

Mar 31, 2026

CVE-2026-3468
MEDIUM

A stored Cross-Site Scripting (XSS) vulnerability has been identified in the SonicWall Email Security appliance due to…

Mar 31, 2026

CVE-2025-40605
MEDIUM

A Path Traversal vulnerability has been identified in the Email Security appliance allows an attacker to manipulate fil…

Nov 20, 2025

CVE-2025-40604
CRITICAL

Download of Code Without Integrity Check Vulnerability in the SonicWall Email Security appliance loads root filesystem…

Nov 20, 2025

CVE-2024-22398
MEDIUM

An improper Limitation of a Pathname to a Restricted Directory (Path Traversal) vulnerability in SonicWall Email Securi…

Mar 14, 2024

CVE-2023-0655
MEDIUM

SonicWall Email Security contains a vulnerability that could permit a remote unauthenticated attacker access to an erro…

Feb 14, 2023

CVE-2021-45105
HIGH

Apache Log4j2 does not always protect from infinite recursion in lookup evaluation

Dec 18, 2021

CVE-2021-45046
KEV CRITICAL

Apache Log4j2 Thread Context Message Pattern and Context Lookup Pattern vulnerable to a denial of service attack

Dec 14, 2021

CVE-2021-44228
KEV CRITICAL

Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints

Dec 10, 2021

CVE-2021-20023
KEV MEDIUM

SonicWall Email Security version 10.0.9.x contains a vulnerability that allows a post-authenticated attacker to read an…

Apr 20, 2021

CVE-2021-20022
KEV HIGH

SonicWall Email Security version 10.0.9.x contains a vulnerability that allows a post-authenticated attacker to upload…

Apr 9, 2021

CVE-2021-20021
KEV CRITICAL

A vulnerability in the SonicWall Email Security version 10.0.9.x allows an attacker to create an administrative account…

Apr 9, 2021

CVE-2021-3450
HIGH

CA certificate check bypass with X509_V_FLAG_X509_STRICT

Mar 25, 2021

CVE-2018-3639
MEDIUM

hw: cpu: speculative store bypass

May 22, 2018

Showing 1 to 13 of 13 CVEs