The updated package fixes a security vulnerability:
Roundcube Webmail through 1.3.9 mishandles Punycode xn-- domain names, leading to homograph attacks. (CVE-2019-15237)
{ "section": "core" }