Description
Roundcube Webmail before 1.5.12 and 1.6 before 1.6.12 is prone to a Cross-Site-Scripting (XSS) vulnerability via the animate tag in an SVG document.
Remediation
References
Related Vulnerabilities
Collabtive Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2015-0258)
WordPress Plugin BuddyPress Docs Security Bypass (1.9.2)
Elgg Exposure of Private Personal Information to an Unauthorized Actor Vulnerability (CVE-2021-3980)
MongoDb CVE-2024-6384 Vulnerability (CVE-2024-6384)
MediaWiki Improper Input Validation Vulnerability (CVE-2021-31555)