This is a security update to the stable version 1.6 of Roundcube Webmail. Fix cross-site scripting (XSS) vulnerability in handling SVG animate attributes. Reported by Valentin T. and Lutz Wolf of CrowdStrike.
- https://bugs.mageia.org/show_bug.cgi?id=33229
- https://github.com/roundcube/roundcubemail/releases/tag/1.6.7
- 9/core/roundcubemail-1.6.7-1.mga9
Get the latest Linux and open source security news straight to your inbox.