[Bug 1216895] VUL-0: CVE-2023-47272: Roundcube 1.5.x before 1.5.6 and 1.6.x before 1.6.5 allows XSS via a Content-Type or Content-Disposition header (used for attachment preview or download).
6 Nov
2023
6 Nov
'23
17:25
https://bugzilla.suse.com/show_bug.cgi?id=1216895 https://bugzilla.suse.com/show_bug.cgi?id=1216895#c2 --- Comment #2 from OBSbugzilla Bot <bwiedemann+obsbugzillabot@suse.com> --- This is an autogenerated message for OBS integration: This bug (1216895) was mentioned in https://build.opensuse.org/request/show/1123659 Factory / roundcubemail -- You are receiving this mail because: You are on the CC list for the bug.
410
Age (days ago)
410
Last active (days ago)
0 comments
1 participants
participants (1)
-
bugzilla_noreply@suse.com