openSUSE Leap 15.6 — roundcubemail — multiple vulnerabilities (8 CVEs) — patch and remediation guide
🔴 Critical ⏱ 15–90 min Last verified: 25 May 2026 Affected versions: openSUSE Leap 15.6 📖 ~4 min read • Source: SUSE advisory openSUSE-SU-2024:0328-1 Related CVEs: CVE-2024-42008 CVE-2024-42009 CVE-2026-35537 CVE-2025-68460 CVE-2025-68461 CVE-2026-25916 CVE-2026-26079 CVE-2024-42010 Upstream summary: A Cross-Site Scripting vulnerability in rcmail_action_mail_get->run() in Roundcube through 1.5.7 and 1.6.x through 1.6.7 allows a remote attacker […]