Winmail Server 4.4 is vulnerable to f_user=%22%3E%3Csvg%20onload Cross Site Scripting (XSS).
No PoCs from references.
- https://github.com/qtxz54/Vul