6/3/2025, 2:20:00 PM | heise online | news

    Jetzt patchen: Exploit für kritische Roundcube-Lücke ist öffentlich

    A critical security vulnerability (CVE-2025-49113) in Roundcube webmail software was disclosed, with an exploit example now available on GitHub. Admins are urged to update immediately to prevent unauthorized command execution via the 'from' parameter in URLs. The vulnerability affects over 53 million hosts and was discovered by FearsOff, who noted it has existed for ten years.

    Read more on heise online