CVE List

CVE-2019-12095

Critical 8.8

Horde Trean, as used in Horde Groupware Webmail Edition through 5.2.22 and other products, allows CSRF, as demonstrated by the treanBookmarkTags parameter to the trean/ URI on a webmail server.

Published October 24, 2019.

Affected software

Get alerts for Horde Groupware

Reference links