Description:
Fix Cross-Site-Scripting vulnerability via SVG's animate tag reported by
Valentin T., CrowdStrike.
Fix Information Disclosure vulnerability in the HTML style sanitizer
reported by somerandomdev.
- https://bugs.mageia.org/show_bug.cgi?id=34863
- https://github.com/roundcube/roundcubemail/releases/tag/1.6.12
- https://www.cve.org/CVERecord?id=CVE-2025-68460
- https://www.cve.org/CVERecord?id=CVE-2025-68461
- 9/core/roundcubemail-1.6.12-1.mga9
Get the latest Linux and open source security news straight to your inbox.