DevSecOps Toolkit

CVE record

CVE-2026-25602

MEDIUMCVSS 4.4

Insufficient Verification of Data Authenticity vulnerability in Mesalvo Meona Client Launcher Component, Mesalvo Meona Server Component makes it possible to send messages to any email address. This issue affects Meona Client Launcher Component: through 19.06.2020 15:11:49; Meona Server Component: through 2025.04 5+323020.

Vulnerability metadata

Published
2026-05-20T05:46:26.313Z
Modified
2026-05-20T08:33:10.193Z
EPSS
Not available
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N

References