Количество 4
Количество 4
CVE-2026-54432
Roundcube Webmail before 1.6.17 and 1.7.x before 1.7.2 allows Stored Cross-Site Scripting (XSS). The issue occurs because the attachment MIME type is not properly escaped on the attachment-validation warning page.
CVE-2026-54432
Roundcube Webmail before 1.6.17 and 1.7.x before 1.7.2 allows Stored Cross-Site Scripting (XSS). The issue occurs because the attachment MIME type is not properly escaped on the attachment-validation warning page.
CVE-2026-54432
Roundcube Webmail before 1.6.17 and 1.7.x before 1.7.2 allows Stored C ...
GHSA-w8fm-hrh6-r2j7
Roundcube Webmail before 1.6.17 and 1.7.x before 1.7.2 allows Stored Cross-Site Scripting (XSS). The issue occurs because the attachment MIME type is not properly escaped on the attachment-validation warning page.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-54432 Roundcube Webmail before 1.6.17 and 1.7.x before 1.7.2 allows Stored Cross-Site Scripting (XSS). The issue occurs because the attachment MIME type is not properly escaped on the attachment-validation warning page. | CVSS3: 4.7 | 0% Низкий | 25 дней назад | |
CVE-2026-54432 Roundcube Webmail before 1.6.17 and 1.7.x before 1.7.2 allows Stored Cross-Site Scripting (XSS). The issue occurs because the attachment MIME type is not properly escaped on the attachment-validation warning page. | CVSS3: 4.7 | 0% Низкий | 25 дней назад | |
CVE-2026-54432 Roundcube Webmail before 1.6.17 and 1.7.x before 1.7.2 allows Stored C ... | CVSS3: 4.7 | 0% Низкий | 25 дней назад | |
GHSA-w8fm-hrh6-r2j7 Roundcube Webmail before 1.6.17 and 1.7.x before 1.7.2 allows Stored Cross-Site Scripting (XSS). The issue occurs because the attachment MIME type is not properly escaped on the attachment-validation warning page. | CVSS3: 4.7 | 0% Низкий | 25 дней назад |
Уязвимостей на страницу