AVG-1388 log

Package roundcubemail
Status Fixed
Severity High
Type cross-site scripting
Affected 1.4.9-1
Fixed 1.4.10-1
Current 1.5.1-1 [community]
Ticket FS#69131
Created Mon Dec 28 08:38:59 2020
Issue Severity Remote Type Description
CVE-2020-35730 High Yes Cross-site scripting
A security issue was found in Roundcube Webmail before version 1.4.10, 1.3.16 and 1.2.13. linkref_addindex in rcube_string_replacer.php allowed performing a...
Date Advisory Package Type
04 Jan 2021 ASA-202101-2 roundcubemail cross-site scripting