Roundcube Webmail XSS Vulnerability Exposes Sensitive Data

Roundcube Webmail XSS Vulnerability Exposes Sensitive Data

RoundCube Webmail is a browser-based, multilingual IMAP client. Its extensive feature set includes MIME support, address books, folder manipulation, message searching, spell checking, and more.

A cross-site scripting (XSS) vulnerability tracked as CVE-2023-43770 in Roundcube has been found, which might result in information leakage through malicious link references in plain/text communications.

Roundcube Webmail 1.6.3 is now available. It offers a patch for a recently discovered XSS vulnerability reported by Niraj Shivtarkar. 

“We just published a security update to version 1.6 of Roundcube Webmail. According to the release notes, it provides a fix to a recently reported XSS vulnerability”.

Among other features, Roundcube Webmail supports internationalized domain names, shared folders and namespaces, and SMTP delivery status notifications. Also, the IMAP folders’ user interface has been changed to allow more space for extensions and plug-ins.



Document

FREE Demo

Implementing AI-Powered Email security solutions “Trustifi” can secure your business from today’s most dangerous email threats, such as Email Tracking, Blocking, Modifying, Phishing, Account Take Over, Business Email Compromise, Malware & Ransomware


Changelog For Version 1.6.3

  • Fix bug where installto.sh/update.sh scripts were removing some essential options from the config file (#9051)
  • Update jQuery-UI to version 1.13.2 (#9041)
  • Fix regression that broke use_secure_urls feature (#9052)
  • Fix potential PHP fatal error when opening a message with message/rfc822 part (#8953)
  • Fix bug where a duplicate tag in HTML email could cause some parts to be cut off (#9029)</li> <li>Fix bug where a list of folders could have been sorted incorrectly (#9057)</li> <li>Fix regression where LDAP addressbook ‘filter’ option was ignored (#9061)</li> <li>Fix wrong order of a multi-folder search result when sorting by size (#9065)</li> <li>Fix so install/update scripts do not require PEAR (#9037)</li> <li>Fix regression where some mail parts could have been decoded incorrectly, or not at all (#9096)</li> <li>Fix handling of an error case in Cyrus IMAP BINARY FETCH, fallback to non-binary FETCH (#9097)</li> <li>Fix PHP8 deprecation warning in the reconnect plugin (#9083)</li> <li>Fix “Show source” on mobile with x_frame_options = deny (#9084)</li> <li>Fix various PHP warnings (#9098)</li> <li>Fix deprecated use of ldap_connect() in password’s ldap_simple driver (#9060)</li> <li>Fix cross-site scripting (XSS) vulnerability in handling of linkrefs in plain text messages</li> </ul> <p>The remote Debian 10 host has packages installed that are affected by this vulnerability. </p> <h2 class="wp-block-heading" id="h-fix-available"><strong>Fix Available</strong></h2> <p>Roundcube Webmail 1.6.3 is considered stable and it is recommended to update all productive installations of Roundcube 1.6.x with it.</p> <p>For Debian 10 buster, this problem has been fixed in version 1.3.17+dfsg.1-1~deb10u3.</p> <p>Hence, it is recommended that you upgrade your roundcube packages.</p> <p class="has-text-align-center has-background" style="background-color:#f4f4f4"><strong>Keep informed about the latest Cyber Security News by following us on Google News, Linkedin, <a rel="nofollow noopener" target="_blank" href="https://twitter.com/The_Cyber_News">Twitter</a>, and Facebook.</strong></p> <p><!-- AI CONTENT END 1 --> </div> <p><script async src="//platform.twitter.com/widgets.js" charset="utf-8"></script><br /> <br /><br /> <br /><a href="https://cybersecuritynews.com/roundcube-webmail-xss-vulnerability/" target="_blank" rel="noopener">Source link </a></p> </div><!-- .entry-content --> <div class="gridhot-related-posts-wrapper" id="gridhot-related-posts-wrapper"> <div class="gridhot-related-posts-header"><h3 class="gridhot-related-posts-title"><span class="gridhot-related-posts-title-inside">Related Articles</span></h3></div> <div class="gridhot-related-posts-list"> <div class="gridhot-related-post-item gridhot-4-col-item"> <div class="gridhot-related-post-item-thumbnail gridhot-related-post-item-child"> <a class="gridhot-related-post-item-title gridhot-related-post-item-thumbnail-link" href="https://cybernoz.com/new-linux-kernel-rust-module-unveiled-to-detect-rootkits/" title="Permanent Link to New Linux Kernel Rust Module Unveiled to Detect Rootkits"><img width="360" height="203" src="https://cybernoz.com/wp-content/uploads/2025/03/New-Linux-Kernel-Rust-Module-Unveiled-to-Detect-Rootkits.webp.jpeg" class="gridhot-related-post-item-thumbnail-img wp-post-image" alt="New Linux Kernel Rust Module Unveiled to Detect Rootkits" title="New Linux Kernel Rust Module Unveiled to Detect Rootkits" decoding="async" fetchpriority="high" srcset="https://cybernoz.com/wp-content/uploads/2025/03/New-Linux-Kernel-Rust-Module-Unveiled-to-Detect-Rootkits.webp.jpeg 1600w, https://cybernoz.com/wp-content/uploads/2025/03/New-Linux-Kernel-Rust-Module-Unveiled-to-Detect-Rootkits.webp-300x169.jpeg 300w, https://cybernoz.com/wp-content/uploads/2025/03/New-Linux-Kernel-Rust-Module-Unveiled-to-Detect-Rootkits.webp-1024x576.jpeg 1024w, https://cybernoz.com/wp-content/uploads/2025/03/New-Linux-Kernel-Rust-Module-Unveiled-to-Detect-Rootkits.webp-768x432.jpeg 768w, https://cybernoz.com/wp-content/uploads/2025/03/New-Linux-Kernel-Rust-Module-Unveiled-to-Detect-Rootkits.webp-1536x864.jpeg 1536w, https://cybernoz.com/wp-content/uploads/2025/03/New-Linux-Kernel-Rust-Module-Unveiled-to-Detect-Rootkits.webp-150x84.jpeg 150w" sizes="(max-width: 360px) 100vw, 360px" /></a> <div class="gridhot-mini-share-buttons-wrapper"><div class="gridhot-mini-share-buttons"><i class="fas fa-share-alt" aria-hidden="true"></i><div class="gridhot-mini-share-buttons-inner gridhot-clearfix"><div class="gridhot-mini-share-buttons-content"><a class="gridhot-mini-share-button gridhot-mini-share-button-linkedin" href="https://www.linkedin.com/shareArticle?mini=true&title=New%20Linux%20Kernel%20Rust%20Module%20Unveiled%20to%20Detect%20Rootkits&url=https%3A%2F%2Fcybernoz.com%2Fnew-linux-kernel-rust-module-unveiled-to-detect-rootkits%2F" target="_blank" rel="nofollow" aria-label="Share on Linkedin : New Linux Kernel Rust Module Unveiled to Detect Rootkits"><i class="fab fa-linkedin-in" aria-hidden="true" title="Share this on Linkedin"></i></a><a class="gridhot-mini-share-button gridhot-mini-share-button-pinterest" href="https://pinterest.com/pin/create/button/?url=https%3A%2F%2Fcybernoz.com%2Fnew-linux-kernel-rust-module-unveiled-to-detect-rootkits%2F&media=https://cybernoz.com/wp-content/uploads/2025/03/New-Linux-Kernel-Rust-Module-Unveiled-to-Detect-Rootkits.webp.jpeg&description=New%20Linux%20Kernel%20Rust%20Module%20Unveiled%20to%20Detect%20Rootkits" target="_blank" rel="nofollow" aria-label="Share on Pinterest: New Linux Kernel Rust Module Unveiled to Detect Rootkits"><i class="fab fa-pinterest" aria-hidden="true" title="Share this on Pinterest"></i></a><a class="gridhot-mini-share-button gridhot-mini-share-button-facebook" href="https://www.facebook.com/sharer.php?u=https%3A%2F%2Fcybernoz.com%2Fnew-linux-kernel-rust-module-unveiled-to-detect-rootkits%2F" target="_blank" rel="nofollow" aria-label="Share on Facebook : New Linux Kernel Rust Module Unveiled to Detect Rootkits"><i class="fab fa-facebook-f" aria-hidden="true" title="Share this on Facebook"></i></a><a class="gridhot-mini-share-button gridhot-mini-share-button-twitter" href="https://x.com/intent/post?text=New%20Linux%20Kernel%20Rust%20Module%20Unveiled%20to%20Detect%20Rootkits&url=https%3A%2F%2Fcybernoz.com%2Fnew-linux-kernel-rust-module-unveiled-to-detect-rootkits%2F" target="_blank" rel="nofollow" aria-label="Share on X : New Linux Kernel Rust Module Unveiled to Detect Rootkits"><i class="fab fa-x-twitter" aria-hidden="true" title="Share this on X"></i></a></div></div></div></div> </div> <div class="gridhot-related-post-item-heading gridhot-related-post-item-child"><a class="gridhot-related-post-item-title" href="https://cybernoz.com/new-linux-kernel-rust-module-unveiled-to-detect-rootkits/" title="Permanent Link to New Linux Kernel Rust Module Unveiled to Detect Rootkits">New Linux Kernel Rust Module Unveiled to Detect Rootkits</a></div> </div> <div class="gridhot-related-post-item gridhot-4-col-item"> <div class="gridhot-related-post-item-thumbnail gridhot-related-post-item-child"> <a class="gridhot-related-post-item-title gridhot-related-post-item-thumbnail-link" href="https://cybernoz.com/microsoft-365-copilot-reloaded-with-enhanced-ai-capabilities/" title="Permanent Link to Microsoft 365 Copilot Reloaded With Enhanced AI Capabilities"><img width="360" height="270" src="https://cybernoz.com/wp-content/uploads/2024/12/Microsoft-365-Copilot-Reloaded-With-Enhanced-AI-Capabilities.webp-360x270.jpeg" class="gridhot-related-post-item-thumbnail-img wp-post-image" alt="Microsoft 365 Copilot" title="Microsoft 365 Copilot Reloaded With Enhanced AI Capabilities" decoding="async" /></a> <div class="gridhot-mini-share-buttons-wrapper"><div class="gridhot-mini-share-buttons"><i class="fas fa-share-alt" aria-hidden="true"></i><div class="gridhot-mini-share-buttons-inner gridhot-clearfix"><div class="gridhot-mini-share-buttons-content"><a class="gridhot-mini-share-button gridhot-mini-share-button-linkedin" href="https://www.linkedin.com/shareArticle?mini=true&title=Microsoft%20365%20Copilot%20Reloaded%20With%20Enhanced%20AI%20Capabilities&url=https%3A%2F%2Fcybernoz.com%2Fmicrosoft-365-copilot-reloaded-with-enhanced-ai-capabilities%2F" target="_blank" rel="nofollow" aria-label="Share on Linkedin : Microsoft 365 Copilot Reloaded With Enhanced AI Capabilities"><i class="fab fa-linkedin-in" aria-hidden="true" title="Share this on Linkedin"></i></a><a class="gridhot-mini-share-button gridhot-mini-share-button-pinterest" href="https://pinterest.com/pin/create/button/?url=https%3A%2F%2Fcybernoz.com%2Fmicrosoft-365-copilot-reloaded-with-enhanced-ai-capabilities%2F&media=https://cybernoz.com/wp-content/uploads/2024/12/Microsoft-365-Copilot-Reloaded-With-Enhanced-AI-Capabilities.webp.jpeg&description=Microsoft%20365%20Copilot%20Reloaded%20With%20Enhanced%20AI%20Capabilities" target="_blank" rel="nofollow" aria-label="Share on Pinterest: Microsoft 365 Copilot Reloaded With Enhanced AI Capabilities"><i class="fab fa-pinterest" aria-hidden="true" title="Share this on Pinterest"></i></a><a class="gridhot-mini-share-button gridhot-mini-share-button-facebook" href="https://www.facebook.com/sharer.php?u=https%3A%2F%2Fcybernoz.com%2Fmicrosoft-365-copilot-reloaded-with-enhanced-ai-capabilities%2F" target="_blank" rel="nofollow" aria-label="Share on Facebook : Microsoft 365 Copilot Reloaded With Enhanced AI Capabilities"><i class="fab fa-facebook-f" aria-hidden="true" title="Share this on Facebook"></i></a><a class="gridhot-mini-share-button gridhot-mini-share-button-twitter" href="https://x.com/intent/post?text=Microsoft%20365%20Copilot%20Reloaded%20With%20Enhanced%20AI%20Capabilities&url=https%3A%2F%2Fcybernoz.com%2Fmicrosoft-365-copilot-reloaded-with-enhanced-ai-capabilities%2F" target="_blank" rel="nofollow" aria-label="Share on X : Microsoft 365 Copilot Reloaded With Enhanced AI Capabilities"><i class="fab fa-x-twitter" aria-hidden="true" title="Share this on X"></i></a></div></div></div></div> </div> <div class="gridhot-related-post-item-heading gridhot-related-post-item-child"><a class="gridhot-related-post-item-title" href="https://cybernoz.com/microsoft-365-copilot-reloaded-with-enhanced-ai-capabilities/" title="Permanent Link to Microsoft 365 Copilot Reloaded With Enhanced AI Capabilities">Microsoft 365 Copilot Reloaded With Enhanced AI Capabilities</a></div> </div> <div class="gridhot-related-post-item gridhot-4-col-item"> <div class="gridhot-related-post-item-thumbnail gridhot-related-post-item-child"> <a class="gridhot-related-post-item-title gridhot-related-post-item-thumbnail-link" href="https://cybernoz.com/multi-stage-toitoin-trojan-abusing-amazon-ec2-instances/" title="Permanent Link to Multi-stage TOITOIN Trojan Abusing Amazon EC2 Instances"><img width="360" height="270" src="https://cybernoz.com/wp-content/uploads/2023/07/Multi-stage-TOITOIN-Trojan-Abusing-Amazon-EC2-Instances.webp-360x270.jpeg" class="gridhot-related-post-item-thumbnail-img wp-post-image" alt="Multi-stage TOITOIN Trojan Abusing Amazon EC2 Instances" title="Multi-stage TOITOIN Trojan Abusing Amazon EC2 Instances" decoding="async" /></a> <div class="gridhot-mini-share-buttons-wrapper"><div class="gridhot-mini-share-buttons"><i class="fas fa-share-alt" aria-hidden="true"></i><div class="gridhot-mini-share-buttons-inner gridhot-clearfix"><div class="gridhot-mini-share-buttons-content"><a class="gridhot-mini-share-button gridhot-mini-share-button-linkedin" href="https://www.linkedin.com/shareArticle?mini=true&title=Multi-stage%20TOITOIN%20Trojan%20Abusing%20Amazon%20EC2%20Instances&url=https%3A%2F%2Fcybernoz.com%2Fmulti-stage-toitoin-trojan-abusing-amazon-ec2-instances%2F" target="_blank" rel="nofollow" aria-label="Share on Linkedin : Multi-stage TOITOIN Trojan Abusing Amazon EC2 Instances"><i class="fab fa-linkedin-in" aria-hidden="true" title="Share this on Linkedin"></i></a><a class="gridhot-mini-share-button gridhot-mini-share-button-pinterest" href="https://pinterest.com/pin/create/button/?url=https%3A%2F%2Fcybernoz.com%2Fmulti-stage-toitoin-trojan-abusing-amazon-ec2-instances%2F&media=https://cybernoz.com/wp-content/uploads/2023/07/Multi-stage-TOITOIN-Trojan-Abusing-Amazon-EC2-Instances.webp.jpeg&description=Multi-stage%20TOITOIN%20Trojan%20Abusing%20Amazon%20EC2%20Instances" target="_blank" rel="nofollow" aria-label="Share on Pinterest: Multi-stage TOITOIN Trojan Abusing Amazon EC2 Instances"><i class="fab fa-pinterest" aria-hidden="true" title="Share this on Pinterest"></i></a><a class="gridhot-mini-share-button gridhot-mini-share-button-facebook" href="https://www.facebook.com/sharer.php?u=https%3A%2F%2Fcybernoz.com%2Fmulti-stage-toitoin-trojan-abusing-amazon-ec2-instances%2F" target="_blank" rel="nofollow" aria-label="Share on Facebook : Multi-stage TOITOIN Trojan Abusing Amazon EC2 Instances"><i class="fab fa-facebook-f" aria-hidden="true" title="Share this on Facebook"></i></a><a class="gridhot-mini-share-button gridhot-mini-share-button-twitter" href="https://x.com/intent/post?text=Multi-stage%20TOITOIN%20Trojan%20Abusing%20Amazon%20EC2%20Instances&url=https%3A%2F%2Fcybernoz.com%2Fmulti-stage-toitoin-trojan-abusing-amazon-ec2-instances%2F" target="_blank" rel="nofollow" aria-label="Share on X : Multi-stage TOITOIN Trojan Abusing Amazon EC2 Instances"><i class="fab fa-x-twitter" aria-hidden="true" title="Share this on X"></i></a></div></div></div></div> </div> <div class="gridhot-related-post-item-heading gridhot-related-post-item-child"><a class="gridhot-related-post-item-title" href="https://cybernoz.com/multi-stage-toitoin-trojan-abusing-amazon-ec2-instances/" title="Permanent Link to Multi-stage TOITOIN Trojan Abusing Amazon EC2 Instances">Multi-stage TOITOIN Trojan Abusing Amazon EC2 Instances</a></div> </div> <div class="gridhot-related-post-item gridhot-4-col-item"> <div class="gridhot-related-post-item-thumbnail gridhot-related-post-item-child"> <a class="gridhot-related-post-item-title gridhot-related-post-item-thumbnail-link" href="https://cybernoz.com/hackers-using-bitbucket-code-hosting-platform-to-host-malicious-payloads/" title="Permanent Link to Hackers Using Bitbucket Code Hosting Platform To Host Malicious Payloads"><img width="360" height="270" src="https://cybernoz.com/wp-content/uploads/2024/10/Hackers-Using-Bitbucket-Code-Hosting-Platform-To-Host-Malicious-Payloads.webp-360x270.jpeg" class="gridhot-related-post-item-thumbnail-img wp-post-image" alt="Hackers Using Bitbucket Code Hosting Platform To Host Malicious Payloads" title="Hackers Using Bitbucket Code Hosting Platform To Host Malicious Payloads" decoding="async" /></a> <div class="gridhot-mini-share-buttons-wrapper"><div class="gridhot-mini-share-buttons"><i class="fas fa-share-alt" aria-hidden="true"></i><div class="gridhot-mini-share-buttons-inner gridhot-clearfix"><div class="gridhot-mini-share-buttons-content"><a class="gridhot-mini-share-button gridhot-mini-share-button-linkedin" href="https://www.linkedin.com/shareArticle?mini=true&title=Hackers%20Using%20Bitbucket%20Code%20Hosting%20Platform%20To%20Host%20Malicious%20Payloads&url=https%3A%2F%2Fcybernoz.com%2Fhackers-using-bitbucket-code-hosting-platform-to-host-malicious-payloads%2F" target="_blank" rel="nofollow" aria-label="Share on Linkedin : Hackers Using Bitbucket Code Hosting Platform To Host Malicious Payloads"><i class="fab fa-linkedin-in" aria-hidden="true" title="Share this on Linkedin"></i></a><a class="gridhot-mini-share-button gridhot-mini-share-button-pinterest" href="https://pinterest.com/pin/create/button/?url=https%3A%2F%2Fcybernoz.com%2Fhackers-using-bitbucket-code-hosting-platform-to-host-malicious-payloads%2F&media=https://cybernoz.com/wp-content/uploads/2024/10/Hackers-Using-Bitbucket-Code-Hosting-Platform-To-Host-Malicious-Payloads.webp.jpeg&description=Hackers%20Using%20Bitbucket%20Code%20Hosting%20Platform%20To%20Host%20Malicious%20Payloads" target="_blank" rel="nofollow" aria-label="Share on Pinterest: Hackers Using Bitbucket Code Hosting Platform To Host Malicious Payloads"><i class="fab fa-pinterest" aria-hidden="true" title="Share this on Pinterest"></i></a><a class="gridhot-mini-share-button gridhot-mini-share-button-facebook" href="https://www.facebook.com/sharer.php?u=https%3A%2F%2Fcybernoz.com%2Fhackers-using-bitbucket-code-hosting-platform-to-host-malicious-payloads%2F" target="_blank" rel="nofollow" aria-label="Share on Facebook : Hackers Using Bitbucket Code Hosting Platform To Host Malicious Payloads"><i class="fab fa-facebook-f" aria-hidden="true" title="Share this on Facebook"></i></a><a class="gridhot-mini-share-button gridhot-mini-share-button-twitter" href="https://x.com/intent/post?text=Hackers%20Using%20Bitbucket%20Code%20Hosting%20Platform%20To%20Host%20Malicious%20Payloads&url=https%3A%2F%2Fcybernoz.com%2Fhackers-using-bitbucket-code-hosting-platform-to-host-malicious-payloads%2F" target="_blank" rel="nofollow" aria-label="Share on X : Hackers Using Bitbucket Code Hosting Platform To Host Malicious Payloads"><i class="fab fa-x-twitter" aria-hidden="true" title="Share this on X"></i></a></div></div></div></div> </div> <div class="gridhot-related-post-item-heading gridhot-related-post-item-child"><a class="gridhot-related-post-item-title" href="https://cybernoz.com/hackers-using-bitbucket-code-hosting-platform-to-host-malicious-payloads/" title="Permanent Link to Hackers Using Bitbucket Code Hosting Platform To Host Malicious Payloads">Hackers Using Bitbucket Code Hosting Platform To Host Malicious Payloads</a></div> </div> </div> </div> </div> </article> <nav class="navigation post-navigation" aria-label="Posts"> <h2 class="screen-reader-text">Post navigation</h2> <div class="nav-links"><div class="nav-previous"><a href="https://cybernoz.com/bind-dns-system-flaws-let-attacker-launch-dos-attacks/" rel="prev">BIND DNS system Flaws Let Attacker Launch DoS Attacks →</a></div><div class="nav-next"><a href="https://cybernoz.com/new-stealthy-and-modular-deadglyph-malware-used-in-govt-attacks/" rel="next">← New stealthy and modular Deadglyph malware used in govt attacks</a></div></div> </nav> <div class="clear"></div> </div><!--/#gridhot-posts-wrapper --> </div> </div> </div><!-- /#gridhot-main-wrapper --> <div class="gridhot-sidebar-one-wrapper gridhot-sidebar-widget-areas gridhot-clearfix" id="gridhot-sidebar-one-wrapper" itemscope="itemscope" itemtype="http://schema.org/WPSideBar" role="complementary"> <div class="theiaStickySidebar"> <div class="gridhot-sidebar-one-wrapper-inside gridhot-clearfix"> <div id="block-3" class="gridhot-side-widget widget gridhot-widget-box widget_block"><div class="gridhot-widget-box-inside"> <div class="wp-block-group"><div class="wp-block-group__inner-container is-layout-flow wp-block-group-is-layout-flow"> <h2 class="wp-block-heading">Latest Posts</h2> <ul class="wp-block-latest-posts__list wp-block-latest-posts"><li><a class="wp-block-latest-posts__post-title" href="https://cybernoz.com/hackers-actively-exploiting-wordpress-arbitrary-installation-vulnerabilities-in-the-wild/">Hackers Actively Exploiting WordPress Arbitrary Installation Vulnerabilities in The Wild</a></li> <li><a class="wp-block-latest-posts__post-title" href="https://cybernoz.com/dell-storage-manager-vulnerabilities-allow-full-system-compromise/">Dell Storage Manager Vulnerabilities Allow Full System Compromise</a></li> <li><a class="wp-block-latest-posts__post-title" href="https://cybernoz.com/the-women-reimagining-cybersecuritys-future/">The Women Reimagining Cybersecurity’s Future</a></li> <li><a class="wp-block-latest-posts__post-title" href="https://cybernoz.com/bind-9-dns-flaw-exposes-706k-servers/">BIND 9 DNS Flaw Exposes 706K Servers</a></li> <li><a class="wp-block-latest-posts__post-title" href="https://cybernoz.com/hong-kong-businesses-lose-us11-billion-to-digital-fraud-in-past-year-transunion-says/">Hong Kong businesses lose US$11 billion to digital fraud in past year, TransUnion says</a></li> </ul></div></div> </div></div> </div> </div> </div><!-- /#gridhot-sidebar-one-wrapper--> </div> </div><!--/#gridhot-content-wrapper --> </div><!--/#gridhot-wrapper --> <div class='gridhot-clearfix' id='gridhot-copyright-area'> <div class='gridhot-copyright-area-inside gridhot-container'> <div class="gridhot-outer-wrapper"> <div class='gridhot-copyright-area-inside-content gridhot-clearfix'> <p class='gridhot-copyright'>Copyright © 2025 Cybernoz - Cybersecurity News</p> <p class='gridhot-credit'><a href="https://themesdna.com/">Design by ThemesDNA.com</a></p> </div> </div></div> </div><!--/#gridhot-copyright-area --> <button class="gridhot-scroll-top" title="Scroll to Top"><i class="fas fa-arrow-up" aria-hidden="true"></i><span class="gridhot-sr-only">Scroll to Top</span></button> <noscript> <div> <img src="https://mc.yandex.ru/watch/102510865" style="position:absolute; left:-9999px;" alt=""/> </div> </noscript> <script type="speculationrules"> {"prefetch":[{"source":"document","where":{"and":[{"href_matches":"\/*"},{"not":{"href_matches":["\/wp-*.php","\/wp-admin\/*","\/wp-content\/uploads\/*","\/wp-content\/*","\/wp-content\/plugins\/*","\/wp-content\/themes\/gridhot-pro\/*","\/*\\?(.+)"]}},{"not":{"selector_matches":"a[rel~=\"nofollow\"]"}},{"not":{"selector_matches":".no-prefetch, .no-prefetch a"}}]},"eagerness":"conservative"}]} </script> <script type="text/javascript" src="https://cybernoz.com/wp-content/plugins/wp-yandex-metrika/assets/contactFormSeven.min.js?ver=1.2.2" id="wp-yandex-metrika_contact-form-7-js"></script> <script type="text/javascript" src="https://cybernoz.com/wp-includes/js/dist/hooks.min.js?ver=4d63a3d491d11ffd8ac6" id="wp-hooks-js"></script> <script type="text/javascript" src="https://cybernoz.com/wp-includes/js/dist/i18n.min.js?ver=5e580eb46a90c2b997e6" id="wp-i18n-js"></script> <script type="text/javascript" id="wp-i18n-js-after"> /* <![CDATA[ */ wp.i18n.setLocaleData( { 'text direction\u0004ltr': [ 'ltr' ] } ); /* ]]> */ </script> <script type="text/javascript" src="https://cybernoz.com/wp-content/plugins/contact-form-7/includes/swv/js/index.js?ver=6.1.2" id="swv-js"></script> <script type="text/javascript" id="contact-form-7-js-before"> /* <![CDATA[ */ var wpcf7 = { "api": { "root": "https:\/\/cybernoz.com\/wp-json\/", "namespace": "contact-form-7\/v1" } }; /* ]]> */ </script> <script type="text/javascript" src="https://cybernoz.com/wp-content/plugins/contact-form-7/includes/js/index.js?ver=6.1.2" id="contact-form-7-js"></script> <script type="text/javascript" src="https://challenges.cloudflare.com/turnstile/v0/api.js" id="cloudflare-turnstile-js" data-wp-strategy="async"></script> <script type="text/javascript" id="cloudflare-turnstile-js-after"> /* <![CDATA[ */ document.addEventListener( 'wpcf7submit', e => turnstile.reset() ); /* ]]> */ </script> <script type="text/javascript" src="https://cybernoz.com/wp-content/themes/gridhot-pro/assets/js/jquery.marquee.min.js" id="marquee-js"></script> <script type="text/javascript" src="https://cybernoz.com/wp-content/themes/gridhot-pro/assets/js/ResizeSensor.min.js" id="ResizeSensor-js"></script> <script type="text/javascript" src="https://cybernoz.com/wp-content/themes/gridhot-pro/assets/js/theia-sticky-sidebar.min.js" id="theia-sticky-sidebar-js"></script> <script type="text/javascript" src="https://cybernoz.com/wp-content/themes/gridhot-pro/assets/js/navigation.js" id="gridhot-navigation-js"></script> <script type="text/javascript" src="https://cybernoz.com/wp-content/themes/gridhot-pro/assets/js/skip-link-focus-fix.js" id="gridhot-skip-link-focus-fix-js"></script> <script type="text/javascript" src="https://cybernoz.com/wp-includes/js/imagesloaded.min.js?ver=5.0.0" id="imagesloaded-js"></script> <script type="text/javascript" id="gridhot-customjs-js-extra"> /* <![CDATA[ */ var gridhot_ajax_object = {"ajaxurl":"https:\/\/cybernoz.com\/wp-admin\/admin-ajax.php","primary_menu_active":"1","secondary_menu_active":"1","primary_mobile_menu_active":"1","secondary_mobile_menu_active":"1","sticky_header_active":"1","sticky_header_mobile_active":"","sticky_sidebar_active":"1","news_ticker_active":"1","news_ticker_duration":"60000","news_ticker_direction":"left","masonry_active":"","fitvids_active":"","backtotop_active":"1","columnwidth":".gridhot-4-col-sizer","gutter":".gridhot-4-col-gutter","posts_navigation_active":"1","posts_navigation_type":"numberednavi","loadmore":"Load More","loading":"Loading...","loadfailed":"Failed to load posts.","load_more_nonce":"3b034ce6b0","posts":"{\"page\":0,\"name\":\"roundcube-webmail-xss-vulnerability-exposes-sensitive-data\",\"error\":\"\",\"m\":\"\",\"p\":0,\"post_parent\":\"\",\"subpost\":\"\",\"subpost_id\":\"\",\"attachment\":\"\",\"attachment_id\":0,\"pagename\":\"\",\"page_id\":0,\"second\":\"\",\"minute\":\"\",\"hour\":\"\",\"day\":0,\"monthnum\":0,\"year\":0,\"w\":0,\"category_name\":\"\",\"tag\":\"\",\"cat\":\"\",\"tag_id\":\"\",\"author\":\"\",\"author_name\":\"\",\"feed\":\"\",\"tb\":\"\",\"paged\":0,\"meta_key\":\"\",\"meta_value\":\"\",\"preview\":\"\",\"s\":\"\",\"sentence\":\"\",\"title\":\"\",\"fields\":\"all\",\"menu_order\":\"\",\"embed\":\"\",\"category__in\":[],\"category__not_in\":[],\"category__and\":[],\"post__in\":[],\"post__not_in\":[],\"post_name__in\":[],\"tag__in\":[],\"tag__not_in\":[],\"tag__and\":[],\"tag_slug__in\":[],\"tag_slug__and\":[],\"post_parent__in\":[],\"post_parent__not_in\":[],\"author__in\":[],\"author__not_in\":[],\"search_columns\":[],\"ignore_sticky_posts\":false,\"suppress_filters\":false,\"cache_results\":true,\"update_post_term_cache\":true,\"update_menu_item_cache\":false,\"lazy_load_term_meta\":true,\"update_post_meta_cache\":true,\"post_type\":\"\",\"posts_per_page\":12,\"nopaging\":false,\"comments_per_page\":\"50\",\"no_found_rows\":false,\"order\":\"DESC\"}","current_page":"1","max_page":"0"}; /* ]]> */ </script> <script type="text/javascript" src="https://cybernoz.com/wp-content/themes/gridhot-pro/assets/js/custom.js" id="gridhot-customjs-js"></script> <script type="text/javascript" src="https://cybernoz.com/wp-content/plugins/mousewheel-smooth-scroll/js/lenis.min.js?ver=1.1.19" id="lenis-js"></script> <script type="text/javascript" src="https://cybernoz.com/wp-content/uploads/wpmss/lenis-init.min.js?ver=1741843726" id="lenis-init-js"></script> <script type="text/javascript" src="https://cybernoz.com/wp-content/plugins/google-site-kit/dist/assets/js/googlesitekit-events-provider-contact-form-7-858d8c72283d3fbfaa98.js" id="googlesitekit-events-provider-contact-form-7-js" defer></script> </body> </html><script src="/cdn-cgi/scripts/7d0fa10a/cloudflare-static/rocket-loader.min.js" data-cf-settings="86fdc51630a6d9c91716de73-|49" defer></script>