==================================================================== CERT-Renater Note d'Information No. 2016/VULN181 _____________________________________________________________________ DATE : 21/04/2016 HARDWARE PLATFORM(S): / OPERATING SYSTEM(S): Systems running Roundcube version prior to 1.1.5, 1.0.9. ====================================================================== https://roundcube.net/news/2016/04/20/updates-1.1.5-and-1.0.9-published ____________________________________________________________________ Updates 1.1.5 and 1.0.9 published 20 April 2016 We just published updates to both stable versions 1.0 and 1.1 delivering important bug fixes and helps protecting Roundcube against more XSS and CSRF attacks. Version 1.1.5 also has two new plugin hooks integrated and version 1.0.9 comes with cherry-picked fixes from the more recent version to ensure proper long term support. See the full changelog in the wiki and the selection for 1.0.9 on the release page. Both versions are considered stable and we recommend to update all productive installations of Roundcube with either of these versions. Download them from GitHub via roundcube.net/download. As usual, don’t forget to backup your data before updating! ========================================================== Serveur de référence du CERT-Renater https://services.renater.fr/ssi/ ========================================================== + CERT-RENATER | tel : 01-53-94-20-44 + + 23 - 25 Rue Daviel | fax : 01-53-94-20-41 + + 75013 Paris | email: cert@support.renater.fr + ==========================================================