CVE-2026-48847 - Roundcube Webmail Redis/Memcache File Deletion Vulnerabilit

General Security Talk, Announcements and News
Post Reply
Starburst-David
Posts: 45
Joined: Wed Feb 11, 2026 8:31 pm

CVE-2026-48847 - Roundcube Webmail Redis/Memcache File Deletion Vulnerabilit

Post by Starburst-David »

CVE ID: CVE-2026-48847
Published: May 25, 2026
Description: Roundcube Webmail 1.6.x before 1.6.16, and 1.7.x before 1.7.1 allows pre-authentication arbitrary file deletion via redis/memcache session poisoning bypass.
Severity: 3.7 | LOW

Visit the link for more details, such as CVSS details, affected products, timeline, and more...
https://cvefeed.io/vuln/detail/CVE-2026-48847
 

POSTREACT(ions) SUMMARY

Post Reply