CVE-2020-12625
PoC —CVSS 3.1
6.1 medium
EPSS
3%p86
Published
()
Modified
Description
An issue was discovered in Roundcube Webmail before 1.4.4. There is a cross-site scripting (XSS) vulnerability in rcube_washtml.php because JavaScript code can occur in the CDATA of an HTML message.
In the news0 stories
No ingested article mentions this CVE yet.