Looking for the vulnerability index of Invicti's legacy products?
Roundcube Incorrect Resource Transfer Between Spheres Vulnerability - CVE-2026-35545 - Vulnerability Database

Roundcube Incorrect Resource Transfer Between Spheres Vulnerability - CVE-2026-35545

High
Reference: CVE-2026-35545
Title: Roundcube Incorrect Resource Transfer Between Spheres Vulnerability
Overview:

An issue was discovered in Roundcube Webmail before 1.5.15 and 1.6.15. The remote image blocking feature can be bypassed via SVG content in an e-mail message. This may lead to information disclosure or access-control bypass. This involves the animate element with attributeNamefill/filter/stroke.