
CVE-2026-26079,CVE-2026-25916: Roundcube vulns https://www.openwall.com/lists/oss-security/2026/02/23/1 Roundcube PHP-based webmail frontend released security updates on Feb 8 * Fix CSS injection vulnerability reported by CERT Polska * Fix remote image blocking bypass via SVG content reported by nullcathedral
Post summary
Roundcube issued security updates on Feb 8 to address two CVEs, fixing a CSS injection flaw and an SVG-based image blocking bypass vulnerability.


