[Pkg-roundcube-maintainers] Processed: found 959140 in 1.2.3+dfsg.1-4+deb9u3, found 959140 in 1.3.10+dfsg.1-1~deb10u1 ...

Debian Bug Tracking System owner at bugs.debian.org
Wed Apr 29 21:45:05 BST 2020


Processing commands for control at bugs.debian.org:

> found 959140 1.2.3+dfsg.1-4+deb9u3
Bug #959140 [src:roundcube] roundcube: Cross-Site Scripting (XSS) vulnerability via malicious HTML messages
Marked as found in versions roundcube/1.2.3+dfsg.1-4+deb9u3.
> found 959140 1.3.10+dfsg.1-1~deb10u1
Bug #959140 [src:roundcube] roundcube: Cross-Site Scripting (XSS) vulnerability via malicious HTML messages
Marked as found in versions roundcube/1.3.10+dfsg.1-1~deb10u1.
> found 959140 1.4.3+dfsg.1-1
Bug #959140 [src:roundcube] roundcube: Cross-Site Scripting (XSS) vulnerability via malicious HTML messages
Marked as found in versions roundcube/1.4.3+dfsg.1-1.
> found 959142 1.2.3+dfsg.1-4+deb9u3
Bug #959142 [src:roundcube] roundcube: CSRF attack can cause an authenticated user to be logged out
Marked as found in versions roundcube/1.2.3+dfsg.1-4+deb9u3.
> found 959142 1.3.10+dfsg.1-1~deb10u1
Bug #959142 [src:roundcube] roundcube: CSRF attack can cause an authenticated user to be logged out
Marked as found in versions roundcube/1.3.10+dfsg.1-1~deb10u1.
> found 959142 1.4.3+dfsg.1-1
Bug #959142 [src:roundcube] roundcube: CSRF attack can cause an authenticated user to be logged out
Marked as found in versions roundcube/1.4.3+dfsg.1-1.
> thanks
Stopping processing here.

Please contact me if you need assistance.
-- 
959140: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=959140
959142: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=959142
Debian Bug Tracking System
Contact owner at bugs.debian.org with problems



More information about the Pkg-roundcube-maintainers mailing list