CVE-2026-75003 | Roundcube Webmail up to 1.6.17/1.7.2 SVG Image cross site scripting

SecurityVulns

A vulnerability categorized as problematic has been discovered in Roundcube Webmail up to 1.6.17/1.7.2. The impacted element is an unknown function of the component SVG Image Handler. The manipulation results in cross site scripting.

This vulnerability is identified as CVE-2026-75003. The attack can be executed remotely. There is not any exploit available.

It is advisable to upgrade the affected component.VulDB Recent EntriesRead More