Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-pq94-h2h7-x49p

Опубликовано: 17 авг. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 5.4

Описание

In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, the "Add to address book" action was subject to stored XSS.

In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, the "Add to address book" action was subject to stored XSS.

EPSS

Процентиль: 12%
0.00215
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 5.4
ubuntu
10 дней назад

In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, the "Add to address book" action was subject to stored XSS.

CVSS3: 5.4
nvd
10 дней назад

In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, the "Add to address book" action was subject to stored XSS.

CVSS3: 5.4
debian
10 дней назад

In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, the "Add to ...

EPSS

Процентиль: 12%
0.00215
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-79