FactaeThe Factual News

Critical flaw in Roundcube Webmail exploited without authentication

A critical SQL vulnerability (CVE-2026-48842) in Roundcube Webmail is being actively exploited.

Published 6h3 sources✓ ConfirmedImportantupdated 58m
Lire en français
≈ 16s

The fact

The flaw allows SQL injection without authentication, targeting email servers.

Attackers could access sensitive data or take control of systems.

3 sources — click a link to read an article on the topic:
Explore this topic
What if you saw the whole news differently?Factae cross-checks hundreds of sources worldwide to keep only the fact, no opinion. Explore the front page.
Follow topic →
Auto-synthesis from 3 media sources · identified on September 25, 2026
← Back to home
Discover

Read more

All cybersecurite →