CVSROOT: /cvs Module name: ports Changes by: [email protected] 2024/08/05 14:34:40
Modified files:
mail/roundcubemail: Tag: OPENBSD_7_5 Makefile distinfo
Log message:
update to roundcubemail-1.6.8 - various fixes, including:
CVE-2024-42009: XSS vulnerability in post-processing of sanitized HTML content
CVE-2024-42008: XSS vulnerability in serving of attachments other than HTML or
SVG
CVE-2024-42010: Information leak (access to remote content) via insufficient
CSS filtering
