Vulnerabilities & PatchesEmerging1 src
CVE-2026-75000 - Roundcube Webmail SVG Sanitization Bypass Information Disclosure
CVE ID : CVE-2026-75000
Published : Aug. 17, 2026, 12:45 p. m.
• 21 minutes ago
Description : In Roundcube Webmail before 1. 6. 18 and 1. 7. x before 1. 7. 3, improper HTML/CSS sanitization of the SVG animate "by" attribute may lead to remote image blocking bypass, which in turn may lead to information disclosure or privilege escalation.
Severity: 5.8
• MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...