Skip to content

CVE-2020-12641

CVE

Threat entity extracted from intelligence sources

Frequency
1
occurrences
First Seen
September 24, 2026
Last Seen
September 24, 2026
API
Exploited in Wild
—
Ransomware Use
—
Public Exploits
—
Attack Vector
—

Vulnerability Overview

Exploitation Activity

Exploitation Intelligence

CVE-2026-48842 is a critical pre-authentication SQL injection vulnerability in Roundcube Webmail's virtuser_query plugin, affecting versions prior to 1.6.16 and 1.7.1. The flaw allows unauthenticated attackers to inject arbitrary SQL statements, potentially compromising sensitive data such as mail a...

Public Exploits

Checking GitHub for proof-of-concept code…