CVE-2024-42010
EUVD-2024-3939205.08.2024, 19:15
mod_css_styles in Roundcube through 1.5.7 and 1.6.x through 1.6.7 insufficiently filters Cascading Style Sheets (CSS) token sequences in rendered e-mail messages, allowing a remote attacker to obtain sensitive information.Enginsight
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| roundcube | roundcube | 𝑥 ≤ 1.5.7 | ADP |
| roundcube | roundcube | 1.6x ≤ 𝑥 ≤ 1.6.7 | ADP |
Debian Releases
Debian Product | |||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| roundcube |
|
Ubuntu Releases
Common Weakness Enumeration
References