CVE-2021-44026
Known Exploited (CISA KEV)CRITICAL
9.8
CVSS Severity Score
Vulnerability Description
Roundcube before 1.3.17 and 1.4.x before 1.4.12 is prone to a potential SQL injection via search or search_params.
Affected Platforms (CPE)
📦
Roundcube
Webmail
< 1.3.17📦
Roundcube
Webmail
>= 1.4.0 and < 1.4.12💻
Fedoraproject
Fedora
= 33💻
Fedoraproject
Fedora
= 34💻
Debian
Debian Linux
= 9.0💻
Debian
Debian Linux
= 10.0💻
Debian
