Mageia 2020-0301: roundcubemail security update
Summary
This update fixes a recently reported cross-site scripting (XSS) vulnerability via HTML messages with malicious svg/namespace. References: - https://bugs.mageia.org/show_bug.cgi?id=26905
References
- https://bugs.mageia.org/show_bug.cgi?id=26905
- https://github.com/roundcube/roundcubemail/releases/tag/1.3.14
Resolution
MGASA-2020-0301 - Updated roundcubemail packages fix security vulnerability
SRPMS
- 7/core/roundcubemail-1.3.14-1.mga7