Unknown threat actors have exploited a now-patched vulnerability in the Roundcube webmail software.The attack was part of a phishing campaign targeting Roundcube users to steal their credentials.The vulnerability, tracked as CVE-2024-37383, allowed for XSS attacks via SVG animate attributes.Roundcube Webmail, commonly used by government agencies, continues to be a target for hackers.