Unrated severityNVD Advisory· Published Aug 29, 2013· Updated Jun 16, 2026
CVE-2013-5646
CVE-2013-5646
Description
Cross-site scripting (XSS) vulnerability in Roundcube webmail 1.0-git allows remote authenticated users to inject arbitrary web script or HTML via the Name field of an addressbook group.
Affected products
2- Range: 1.0-git
Patches
Vulnerability mechanics
References
1- trac.roundcube.net/ticket/1489251nvdExploit
News mentions
0No linked articles in our index yet.