🟠Roundcube CVE-2026-48842 — pre-auth SQL injection
A CVSS 8.1 flaw in the virtuser_query plugin can expose vulnerable Roundcube installations before authentication. Exploitation has been reported, but i
stemshop.top/blog/roundcu...
#CVE #CVE202648842 #Roundcube #Webmail #SQLInjection #CyberSecurity
