HGiga MailSherlock’s specific function has insufficient filtering for user input. An unauthenticated remote attacker can exploit this vulnerability to inject JavaScript, conducting a reflected XSS attack.Referenceshttps://www.twcert.org.tw/tw/cp-132-6958-e1a8e-1.html