CVE-2020-12625

Published
View on NVD ↗
CVSS v3
6.1
MEDIUM
CVSS v2
4.3
MEDIUM
Affected
2
PROJECTS

Description

An issue was discovered in Roundcube Webmail before 1.4.4. There is a cross-site scripting (XSS) vulnerability in rcube_washtml.php because JavaScript code can occur in the CDATA of an HTML message.

Public Disclosures
GitHubGitHub
92
The Roundcube Webmail suite
GitHubGitHub
7K