[Pkg-roundcube-maintainers] Debian Bullseye/Buster: XSS vulnerability in handling of linkrefs in plain text messages

Guilhem Moulin guilhem at debian.org
Wed Sep 27 11:53:47 BST 2023


On Wed, 27 Sep 2023 at 12:30:59 +0200, Georg Schlagholz via Pkg-roundcube-maintainers wrote:
> I kindly ask you to apply the fix for the 1.4 version in debian
> Bullseye/Buster. https://packages.debian.org/search?keywords=roundcube

1.4.14+dfsg.1-1~deb11u1 will be available along with the next point
release, see https://bugs.debian.org/1052611 .

-- 
Guilhem.



More information about the Pkg-roundcube-maintainers mailing list