Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-p64r-9rcj-x33x

Опубликовано: 26 мая 2026
Источник: github
Github: Не прошло ревью
CVSS3: 7.2

Описание

Roundcube Webmail 1.6.x before 1.6.16 and 1.7.x before 1.7 has insufficient HTML sanitization that could lead to Cascading Style Sheets (CSS) injection via an SVG document that has an animate element with the attributeName attribute.

Roundcube Webmail 1.6.x before 1.6.16 and 1.7.x before 1.7 has insufficient HTML sanitization that could lead to Cascading Style Sheets (CSS) injection via an SVG document that has an animate element with the attributeName attribute.

EPSS

Процентиль: 31%
0.00388
Низкий

7.2 High

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 7.2
ubuntu
2 месяца назад

Roundcube Webmail 1.6.x before 1.6.16 and 1.7.x before 1.7 has insufficient HTML sanitization that could lead to Cascading Style Sheets (CSS) injection via an SVG document that has an animate element with the attributeName attribute.

CVSS3: 7.2
nvd
2 месяца назад

Roundcube Webmail 1.6.x before 1.6.16 and 1.7.x before 1.7 has insufficient HTML sanitization that could lead to Cascading Style Sheets (CSS) injection via an SVG document that has an animate element with the attributeName attribute.

CVSS3: 7.2
debian
2 месяца назад

Roundcube Webmail 1.6.x before 1.6.16 and 1.7.x before 1.7 has insuffi ...

CVSS3: 7.2
fstec
3 месяца назад

Уязвимость почтового клиента RoundCube Webmail, связанная с непринятием мер по защите структуры веб-страницы, позволяющая нарушителю выполнить произвольный код

suse-cvrf
2 месяца назад

Security update for roundcubemail

EPSS

Процентиль: 31%
0.00388
Низкий

7.2 High

CVSS3

Дефекты

CWE-79