Total vulnerabilities in the database
Cross-site scripting (XSS) vulnerability in Roundcube Webmail before 1.0.9 and 1.1.x before 1.1.5 allows remote attackers to inject arbitrary web script or HTML via a crafted SVG, a different vulnerability than CVE-2015-8864.
Software | From | Fixed in |
---|---|---|
opensuse / leap | 42.1 | 42.1.x |
opensuse / opensuse | 13.1 | 13.1.x |
opensuse / opensuse | 13.2 | 13.2.x |
roundcube / roundcube_webmail | 1.1.3 | 1.1.3.x |
roundcube / roundcube_webmail | 1.1.2 | 1.1.2.x |
roundcube / roundcube_webmail | 1.1.1 | 1.1.1.x |
roundcube / webmail | - | 1.0.8.x |
roundcube / webmail | 1.1 | 1.1.x |
roundcube / webmail | 1.1-beta | 1.1-beta.x |
roundcube / webmail | 1.1-rc | 1.1-rc.x |
roundcube / webmail | 1.1.4 | 1.1.4.x |