📦 Sogo

by Alinto

🔍 What is Sogo?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2026-3054

MEDIUM CVSS 4.3 Feb 24, 2026

A cross-site scripting (XSS) vulnerability in Alinto SOGo versions 5.12.3 and 5.12.4 allows remote attackers to inject malicious scripts via the 'hint' argument. This affects organizations using these...

CVE-2025-63499

MEDIUM CVSS 6.1 Dec 4, 2025

Alinto SOGo 5.12.3 contains a cross-site scripting vulnerability in the theme parameter that allows attackers to inject malicious scripts. When exploited, this can lead to session hijacking, credentia...

CVE-2025-63498

MEDIUM CVSS 6.1 Nov 24, 2025

CVE-2025-63498 is a cross-site scripting (XSS) vulnerability in alinto SOGo 5.12.3 that allows attackers to inject malicious scripts via the 'userName' parameter. When exploited, this can lead to sess...

CVE-2024-34462

MEDIUM CVSS 6.1 May 4, 2024

This vulnerability in Alinto SOGo allows cross-site scripting (XSS) attacks during attachment preview functionality. Attackers can inject malicious scripts that execute in users' browsers when they pr...