CVE-2026-35541 - Roundcube Webmail Password Comparison Type Confusion Vulnerability
CVE ID :CVE-2026-35541
Published : April 3, 2026, 5:16 a.m. | 1 hour, 50 minutes ago
Description :An issue was discovered in Roundcube Webmail before 1.5.14 and 1.6.14. Incorrect password comparison in the password plugin could lead to type confusion that allows a password change without knowing the old password.
Severity: 4.2 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Published : April 3, 2026, 5:16 a.m. | 1 hour, 50 minutes ago
Description :An issue was discovered in Roundcube Webmail before 1.5.14 and 1.6.14. Incorrect password comparison in the password plugin could lead to type confusion that allows a password change without knowing the old password.
Severity: 4.2 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...