FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

Roundcube -- Multiple vulnerabilities

Affected packages
roundcube < 1.6.12,1

Details

VuXML ID 3a59024c-d8cf-11f0-af8c-8447094a420f
Discovery 2025-12-14
Entry 2025-12-14

The Roundcube project reports:

Cross-Site-Scripting vulnerability via SVG’s animate tag

Information Disclosure vulnerability in the HTML style sanitizer

References

URL https://roundcube.net/news/2025/12/13/security-updates-1.6.12-and-1.5.12