Posted by SEC Consult Vulnerability Lab via Fulldisclosure on Apr 29
*Update 2026-04-28:* The vendor contacted us and now provides a patched version v1.3.674 which can be obtained at the
following URL:
https://desktime.com/download
– Read More – Full Disclosure
![[KIS-2026-04] SmarterMail <= 9518 (MailboxId) Reflected Cross-Site Scripting Vulnerability AttackFeed by Joe Wagner | [KIS-2026-04] SmarterMail](https://attackfeed.com/wp-content/uploads/2026/02/fulldisclosure-img-jjsJpG.webp)
![[KIS-2026-02] Blesta <= 5.13.1 (Admin Interface) Multiple PHP Object Injection Vulnerabilities AttackFeed by Joe Wagner | [KIS-2026-02] Blesta](https://attackfeed.com/wp-content/uploads/2026/02/fulldisclosure-img-LQRUAg.webp)

