A vulnerability was found in Roundcube Webmail up to 1.6.17/1.7.2. It has been declared as problematic. This affects an unknown function of the component managesieve plugin. The manipulation results in improper input validation.

This vulnerability was named CVE-2026-75004. The attack may be performed from remote. There is no available exploit.

It is recommended to upgrade the affected component.