[horde] another security issue discovered in Horde ref. CVE-2022-30287

Cristian-Petru Pencov cristian.pencov at artmatch.ro
Wed Jun 1 16:36:21 UTC 2022


Hi folks,
it seems that Horde is under 'fire' regarding the security flaws
And this one is really nasty!

"New Unpatched Horde Webmail Bug Lets Hackers Take Over Server by  
Sending Email"
https://thehackernews.com/2022/06/new-unpatched-horde-webmail-bug-lets.html

and from researcher's blog
https://blog.sonarsource.com/horde-webmail-rce-via-email/

I hope that the dev team will find the quickest solution to block this  
attacks.

but:
As a beneficiary of this Open Source application, these findings make  
me wonder whether to continue using it or not!

and the question that comes naturally would be:
Is there still goodwill from developers or the community to provide us  
a secure application and fix these vulnerabilities in a very short time?

Thank you all for your precious time to make things better than yesterday!


-- 

Best regards,
Cristian-Petru Pencov
IT specialist

ARTMATCH SRL
Calea Sagului (DN 59), KM 8+550 m
Platforma Incontro, Hala 4-7
307221 Chisoda, Timis, Romania
mobile: +4 0721-202989 | fax: +4 0256-305015
e-mail: cristian.pencov at artmatch.ro | internet: www.artmatch.ro




Please consider the environment before printing this email.



More information about the horde mailing list