Roundcube security advisory (AV26-503) – Update 1

Canadian Centre for Cyber Security Version 1 original current

Imported from official source

Serial number: AV26-503Date: May 25, 2026Updated: September 21, 2026 On May 24, 2026, Roundcube published security advisories to address vulnerabilities in the following product:  Roundcube Webmail – versions prior to 1.6.16 Roundcube Webmail – versions prior to 1.7.1 Update 1 Open-source reporting indicates that CVE-2026-48842 is being exploited in the wild. The Cyber Centre encourages users and administrators to review the provided web links and apply the necessary updates. Roundcube Webmail 1.6.16 Roundcube Webmail 1.71 Roundcube Open Source Webmail Software

This version

Version
1 of 1
Recorded
September 21, 2026 21:00
Change
Initial
Content hash
2477f212868afc9b0f027733bc183aae
All versions
Revision history

Officially records where a publication came from, not whether it is true. Imported records are reproduced from an organization's own official source.