Cross-site scripting (XSS) vulnerability in mime.php for SquirrelMail before 1.4.3 allows remote attackers to insert arbitrary HTML and script via the content-type mail header, as demonstrated using read_body.php.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.149
EPSS Ranking 94.1%