Report: CVE-2026-35541 - Roundcube Webmail Password Comparison Type Confusion Vulnerability - Analysis

Report: CVE-2026-35541 - Roundcube Webmail Password Comparison Type Confusion Vulnerability - Analysis

CVE ID :CVE-2026-35541 Published : April 3, 2026, 3:50 a.m. | 1 hour, 35 minutes ago Description :An issue was discovered in Roundcube Webmail before 1.5.14 and 1.6.14. Incorrect password comparison in the password plugin could lead to type confusion that allows a password change without knowing the old password. Severity: 4.2 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Severity
MEDIUM
Published
April 3, 2026