Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2026-74999

In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, the "Add to address book" action was subject to stored XSS.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 11.8%
CVSS Severity
CVSS v3 Score 5.4
Products affected by CVE-2026-74999


Contact Us

Shodan ® - All rights reserved