{"api_version":"v1","generated_at":"2026-10-07T20:10:00+00:00","product":{"cve_count":4,"evidence_gap_note":"This CVE identity is linked to an existing Lifecycle product history.","id":"security:cve-roundcube-roundcube-webmail-80620f606218","lifecycle_state":"covered","linked_lifecycle_url":"https://lifecycle.blacktree.nl/targets/roundcube","name":"Roundcube Webmail","next_cursor":null,"observations":[{"affected":"n/a","affected_versions_present":true,"cve_id":"CVE-2021-44026","cve_url":"https://cve.blacktree.nl/cve/CVE-2021-44026","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-10-21T23:25:24.717Z","patch_url":"https://bugs.debian.org/1000156","primary_source":"","published":"2021-11-19T03:47:27.000Z"},{"affected":"n/a","affected_versions_present":true,"cve_id":"CVE-2020-35730","cve_url":"https://cve.blacktree.nl/cve/CVE-2020-35730","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-10-21T23:35:31.104Z","patch_url":"https://github.com/roundcube/roundcubemail/compare/1.4.9...1.4.10","primary_source":"","published":"2020-12-28T19:37:08.000Z"},{"affected":"n/a","affected_versions_present":true,"cve_id":"CVE-2020-12641","cve_url":"https://cve.blacktree.nl/cve/CVE-2020-12641","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-10-21T23:35:44.407Z","patch_url":"https://roundcube.net/news/2020/04/29/security-updates-1.4.4-1.3.11-and-1.2.10","primary_source":"","published":"2020-05-04T14:58:15.000Z"},{"affected":"n/a","affected_versions_present":true,"cve_id":"CVE-2017-16651","cve_url":"https://cve.blacktree.nl/cve/CVE-2017-16651","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-10-21T23:55:30.379Z","patch_url":"https://roundcube.net/news/2017/11/08/security-updates-1.3.3-1.2.7-and-1.1.10","primary_source":"","published":"2017-11-09T14:00:00.000Z"}],"source_generated_at":"2026-10-07T06:21:30.017Z","vendor":"Roundcube"}}
