CVE-2025-68461
🔥 Known Exploited (CISA KEV)HIGH
7.2
CVSS Severity Score
Vulnerability Description
Roundcube Webmail before 1.5.12 and 1.6 before 1.6.12 is prone to a Cross-Site-Scripting (XSS) vulnerability via the animate tag in an SVG document.
Affected Platforms (CPE)
📦
Roundcube
Webmail
< 1.5.12>= 1.6.0 and < 1.6.12
