CVE-2023-5631 | Roundcube up to 1.4.14/1.5.4/1.6.3 SVG Document rcube_washtml.php cross site scripting
A vulnerability classified as problematic was found in Roundcube up to 1.4.14/1.5.4/1.6.3. Affected by this vulnerability is an unknown functionality in the library program/lib/Roundcube/rcube_washtml.php of the component SVG Document Handler. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2023-5631. The attack can be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.