| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-35391 | Bulwark Webmail getClientIP() trusted client-controlled X-Forwarded-For value, enabling rate limit bypass and audit log forgery | bulwarkmail | webmail | - | - | 2026-04-06 20:17:40 | Deep Dive |
| CVE-2026-35390 | Content-Security-Policy was set to Report-Only mode, failing to block XSS attacks | bulwarkmail | webmail | - | - | 2026-04-06 20:13:30 | Deep Dive |
| CVE-2026-35389 | Bulwark Webmail S/MIME signature verification accepted self-signed certificates | bulwarkmail | webmail | - | - | 2026-04-06 20:11:57 | Deep Dive |
| CVE-2026-35545 | Roundcube Webmail 安全漏洞 | Roundcube | Webmail | Medium | 5.3 | 2026-04-03 04:02:07 | Deep Dive |
| CVE-2026-35544 | Roundcube Webmail 安全漏洞 | Roundcube | Webmail | Medium | 5.3 | 2026-04-03 03:59:49 | Deep Dive |
| CVE-2026-35543 | Roundcube Webmail 安全漏洞 | Roundcube | Webmail | Medium | 5.3 | 2026-04-03 03:57:07 | Deep Dive |
| CVE-2026-35542 | Roundcube Webmail 安全漏洞 | Roundcube | Webmail | Medium | 5.3 | 2026-04-03 03:54:18 | Deep Dive |
| CVE-2026-35541 | Roundcube Webmail 安全漏洞 | Roundcube | Webmail | Medium | 4.2 | 2026-04-03 03:50:47 | Deep Dive |
| CVE-2026-35540 | Roundcube Webmail 安全漏洞 | Roundcube | Webmail | Medium | 5.4 | 2026-04-03 03:47:51 | Deep Dive |
| CVE-2026-35539 | Roundcube Webmail 跨站脚本漏洞 | Roundcube | Webmail | Medium | 6.1 | 2026-04-03 03:39:17 | Deep Dive |
| CVE-2026-35538 | Roundcube Webmail 参数注入漏洞 | Roundcube | Webmail | Low | 3.1 | 2026-04-03 03:35:37 | Deep Dive |
| CVE-2026-35537 | Roundcube Webmail 代码问题漏洞 | Roundcube | Webmail | Low | 3.7 | 2026-04-03 03:28:29 | Deep Dive |
| CVE-2026-34834 | Bulwark Webmail: Authentication Bypass in verifyIdentity() due to missing cookie validation | bulwarkmail | webmail | - | - | 2026-04-02 19:11:54 | Deep Dive |
| CVE-2026-34833 | Bulwark Webmail: Information Exposure: password returned in /api/auth/session | bulwarkmail | webmail | - | - | 2026-04-02 19:11:39 | Deep Dive |
| CVE-2026-26079 | Roundcube Webmail 安全漏洞 | Roundcube | Webmail | Medium | 4.7 | 2026-02-11 04:27:24 | Deep Dive |
| CVE-2026-25916 | Roundcube Webmail 安全漏洞 | Roundcube | Webmail | Medium | 4.3 | 2026-02-09 08:14:10 | Deep Dive |
| CVE-2025-68461 | Roundcube Webmail 跨站脚本漏洞 | Roundcube | Webmail | High | 7.2 | 2025-12-18 05:00:54 | Deep Dive |
| CVE-2025-68460 | Roundcube Webmail 安全漏洞 | Roundcube | Webmail | High | 7.2 | 2025-12-18 04:54:13 | Deep Dive |
| CVE-2025-49113 | Roundcube Webmail 安全漏洞 | Roundcube | Webmail | Critical | 9.9 | 2025-06-02 00:00:00 | Deep Dive |
| CVE-2020-8865 | Horde Groupware Webmail 路径遍历漏洞 | Horde | Groupware Webmail Edition | 中危 | - | 2020-03-23 20:15:17 | Deep Dive |