VDB

GCVE-110-MAGEIA-2017-92

GCVE-110-MAGEIA-2017-92
Advisory Published
Vulnetix · Advisory published March 27, 2017
rcube_utils.php in Roundcube before 1.1.8 and before 1.2.4 is susceptible to a cross-site scripting vulnerability via a crafted Cascading Style Sheets (CSS) token sequence within an SVG element (CVE-2017-6820).

Affected Products

VendorProductVersionsPlatforms
Mageiakaffeine0 (affected), 2.0.13-1.mga6 (unaffected)
Mageiaroundcubemail0 (affected), 1.0.9-1.2.mga5 (unaffected), 0 (affected), 1.0.9-1.2.mga5 (unaffected)

Browse GCVE Records

74,108 records in the GCVE database · Updated July 20, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›