Описание
Roundcube Webmail before 1.5.13 and 1.6 before 1.6.13, when "Block remote images" is used, does not block SVG feImage.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | needed | |
| esm-apps/bionic | needed | |
| esm-apps/focal | needed | |
| esm-apps/jammy | needed | |
| esm-apps/noble | needed | |
| esm-apps/xenial | not-affected | code not present |
| jammy | needed | |
| noble | needed | |
| questing | needed | |
| upstream | released | 1.6.13+dfsg-1 |
Показывать по
10
Ссылки на источники
EPSS
Процентиль: 12%
0.00041
Низкий
4.3 Medium
CVSS3
Связанные уязвимости
CVSS3: 4.3
nvd
около 2 месяцев назад
Roundcube Webmail before 1.5.13 and 1.6 before 1.6.13, when "Block remote images" is used, does not block SVG feImage.
CVSS3: 4.3
debian
около 2 месяцев назад
Roundcube Webmail before 1.5.13 and 1.6 before 1.6.13, when "Block rem ...
CVSS3: 4.3
github
около 2 месяцев назад
Roundcube Webmail before 1.5.13 and 1.6 before 1.6.13, when "Block remote images" is used, does not block SVG feImage.
EPSS
Процентиль: 12%
0.00041
Низкий
4.3 Medium
CVSS3