
CVE-2026-34816 Endian Firewall version 3.3.25 and prior allow stored cross-site scripting (XSS) via the domain parameter to /manage/smtpscan/domainrouting/. An authenticated attacke… https://www.cve.org/CVERecord?id=CVE-2026-34816
Post summary
A stored cross‑site scripting vulnerability (CVE‑2026‑34816) affects Endian Firewall v3.3.25 and earlier via the domain parameter; no PoC, exploit code, active exploitation, or patch information is included.
