← Back to CVE List
CVE-2023-3221
User enumeration vulnerability in Password Recovery plugin 1.2 version for Roundcube, which could allow a remote attacker to create a test script against the password recovery function to enumerate all users in the database.
> MITRE Terms of Use apply – see LICENSE‑MITRE.txt