Roundcube Releases Urgent Security Update to Fix Critical Bugs
ID: 0f5241cf-0aa7-513b-a07f-37daa3980d31
STIX ID: report--0f5241cf-0aa7-513b-a07f-37daa3980d31
Feed Name: GBHackers
Threat Score
Roundcube Webmail released urgent security update 1.6.14 that fixes eight critical vulnerabilities — including a pre-auth arbitrary file write via unsafe deserialization (the most severe), authentication bypass, IMAP injection combined with CSRF, SSRF, XSS, and multiple privacy bypasses — and urges administrators to update immediately, back up data, and verify package checksums.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
