Vulnerability Bulletins

CVE-2026-48847

   
Affected software REDIS
 
Roundcube Webmail 1.6.x before 1.6.16, and 1.7.x before 1.7.1 allows pre-authentication arbitrary file deletion via redis/memcache session poisoning bypass.

Link:

https://nvd.nist.gov/vuln/detail/CVE-2026-48847