CVE-2021-44025
19.11.2021, 04:15
Roundcube before 1.3.17 and 1.4.x before 1.4.12 is prone to XSS in handling an attachment's filename extension when displaying a MIME type warning message.
Vendor | Product | Version |
---|---|---|
roundcube | webmail | 𝑥 < 1.3.17 |
roundcube | webmail | 1.4.0 ≤ 𝑥 < 1.4.12 |
debian | debian_linux | 9.0 |
debian | debian_linux | 10.0 |
debian | debian_linux | 11.0 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
References