Roundcube Pre-Auth SQL Injection Flaw Actively Exploited in the Wild
- Posted on September 25, 2026
- By The Hacker News
- 0 Views
- 1 min read
In brief
Generating AI summary…
Roundcube Pre-Auth SQL Injection Flaw Actively Exploited in the Wild
Roundcube's patched CVE-2026-48842 SQL injection is actively exploited, affecting 1.6.x before 1.6.16 and 1.7.x before 1.7.1.