FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

Roundcube -- XSS vulnerability in SVG

Affected packages
roundcube < 1.6.4,1

Details

VuXML ID d2ad7647-6dd9-11ee-85eb-84a93843eb75
Discovery 2023-10-16
Entry 2023-10-18

The Roundcube project reports:

cross-site scripting (XSS) vulnerability in handling of SVG in HTML messages

References

URL https://roundcube.net/news/2023/10/16/security-update-1.6.4-released