Beveiligingsadvies

CVE-2026-48844

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-05-25 19:14:48
Laatst bijgewerkt 2026-05-26 12:48:17
Toegewezen door mitre
CVSS-score 7.5
Status PUBLISHED

Beschrijving

Roundcube Webmail 1.6.x before 1.6.16 and 1.7.x before 1.7.1 has insecure code evaluation logic in LDAP the autovalues option that could lead to code injection. (Support for code evaluation has been removed in 1.6.16 and 1.7.1.)