An issue was discovered in SuperWebMailer 9.00.0.01710. It allows superadmincreate.php XSS via crafted incorrect passwords.Referenceshttps://herolab.usd.de/security-advisories/https://herolab.usd.de/security-advisories/usd-2023-0011/