Vulnerabilities & PatchesEmerging1 src
CVE-2026-74999 - Roundcube Webmail Stored Cross-Site Scripting Vulnerability
CVE ID : CVE-2026-74999
Published : Aug. 17, 2026, 12:42 p. m.
• 24 minutes ago
Description : In Roundcube Webmail before 1. 6. 18 and 1. 7. x before 1. 7. 3, the "Add to address book" action was subject to stored XSS.
Severity: 5.4
• MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...