Active Exploitation of Vulnerability in Roundcube Webmail

Imported from official source

Announcement

Attackers are exploiting a high-severity vulnerability in Roundcube Webmail to perform SQL injection without authentication. Patch immediately.

Read the original at the source: https://www.csa.gov.sg/alerts-and-advisories/alerts/al-2026-131

Officially imported this from Cyber Security Agency of Singapore’s own source. If you work there, claiming the profile and verifying the domain lets you choose to show the full text here.

Provenance

Organization
Cyber Security Agency of Singapore — imported from official source
Official source
https://www.csa.gov.sg/alerts-and-advisories/rss.xml RSS
Imported
October 03, 2026 20:41
Versions
1 recorded
Identity
urn:isomer:resource:423140

Officially records where a publication came from, not whether it is true. Imported records are reproduced from an organization's own official source.