Loading...
Loading...
program/lib/Roundcube/rcube_washtml.php in Roundcube before 1.0.5 does not properly quote strings, which allows remote attackers to conduct cross-site scripting (XSS) attacks via the style attribute in an email.
February 3, 2015
May 6, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2015-1433
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.