Article

    Cyber News / Article / Roundcube Webmail Patches 12 Security Flaws, Including Zero-Click XSS and SSRF Bypass

    Roundcube Webmail Patches 12 Security Flaws, Including Zero-Click XSS and SSRF Bypass
    Ab
    Abinaya-4 days ago

    Roundcube Webmail Patches 12 Security Flaws, Including Zero-Click XSS and SSRF Bypass

    <p>Roundcube Webmail has released security updates for its 1.6 LTS and 1.7 branches, fixing 12 vulnerabilities that could expose users and servers to cross-site scripting, email header injection, cross-user data access, remote-content bypasses, and server-side request forgery attacks. The new releases, Roundcube 1.6.19 and 1.7.4, address flaws in how the open-source webmail platform processes email [&#8230;]</p> <p>The post <a href="https://cybersecuritynews.com/roundcube-webmail-patches-12-security-flaws/">Roundcube Webmail Patches 12 Security Flaws, Including Zero-Click XSS and SSRF Bypass</a> appeared first on <a href="https://cybersecuritynews.com">Cyber Security News</a>.</p>

    Original source