
CVE-2026-35541 An issue was discovered in Roundcube Webmail before 1.5.14 and 1.6.14. Incorrect password comparison in the password plugin could lead to type confusion that allows a… https://www.cve.org/CVERecord?id=CVE-2026-35541
Post summary
Roundcube Webmail’s password plugin has an incorrect password comparison that can create type confusion, making the flaw a disclosed vulnerability.
