XSS vulnerability in Roundcube 1.0.5 - 1.1.1

Feb. 1, 2016

Webmail client Roundcube (versions 1.0.5 - 1.1.1 ) contains
XSS vulnerability, allowing the attacker arbitrary code injection. Recommended fis is upgrade to recent roundcube version.