Where
-Infinity
0

BleepingComputerCISA confirms active exploitation of four enterprise software bugs

First published (updated )

Synacor Zimbra Collaboration SuiteXSS

Risk 38
Severity
6.1
First published (updated )

Zimbra Collaboration Suite (ZCS)CSRF

Risk 77
Severity
8.8
First published (updated )

BleepingComputerState-sponsored hackers embrace ClickFix social engineering tactic

First published (updated )

Synacor Zimbra Collaboration SuiteAn issue was discovered in the Webmail Classic UI in Zimbra Collaboration (ZCS) 9.0 and 10.0 and 10.…

Risk 43
Severity
7.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Zimbra ZimbraZimbra GraphQL Cross-Site Request Forgery Information Disclosure Vulnerability

Risk 27
Severity
6.5
EPSS
0.10%
First published (updated )

Synacor Zimbra Collaboration SuiteXSS

Risk 34
Severity
5.4
First published (updated )

Synacor Zimbra Collaboration SuiteXSS

Risk 34
Severity
5.4
First published (updated )

Synacor Zimbra Collaboration SuiteXSS

Risk 34
Severity
5.4
First published (updated )

Synacor Zimbra Collaboration SuiteXSS

Risk 29
Severity
4.8
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Synacor Zimbra Collaboration SuiteXSS

Risk 29
Severity
4.8
First published (updated )

Synacor Zimbra Collaboration SuiteXSS, Malicious File Upload

Risk 34
Severity
5.4
First published (updated )

Synacor Zimbra Collaboration SuiteXSS

Risk 34
Severity
5.4
First published (updated )

Zimbra CollaborationSSRF, XSS, Command Injection

Risk 79
Severity
8.8
First published (updated )

Zimbra ZimbraZimbra GraphQL Cross-Site Request Forgery Information Disclosure Vulnerability

Risk 38
Severity
6.5
First published (updated )
Advisory
ZDI-24-1369
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Zimbra ZimbraZDI-24-1369: Zimbra GraphQL Cross-Site Request Forgery Information Disclosure Vulnerability

Risk 38
Severity
6.5
First published (updated )

Zimbra CollaborationPath Traversal

Risk 43
Severity
7.5
First published (updated )

Zimbra CollaborationAn issue was discovered in Zimbra Collaboration (ZCS) 9.0 and 10.0. The zmmailboxdmgr binary, a comp…

Risk 69
Severity
7.8
First published (updated )

Zimbra CollaborationXSS, Input Validation

Risk 34
Severity
5.4
First published (updated )

Zimbra CollaborationIn Zimbra Collaboration (ZCS) 8.8.15 and 9.0, a closed account (with 2FA and generated passwords) ca…

Risk 38
Severity
6.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Zimbra CollaborationXSS

Risk 38
Severity
6.1
First published (updated )

Zimbra CollaborationXSS

Risk 38
Severity
6.1
First published (updated )

Zimbra CollaborationXSS

Risk 38
Severity
6.1
First published (updated )

Zimbra CollaborationXSS, Code Injection

Risk 66
Severity
9.1
First published (updated )

Zimbra zm-ajaxZimbra zm-ajax XFormItem.js XFormItem.prototype.setError cross site scripting

Risk 31
Severity
4.7
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

BleepingComputerGoogle: Hackers exploited Zimbra zero-day in attacks on govt orgs

First published (updated )

Zimbra CollaborationAn issue in Zimbra Collaboration (ZCS) v.8.8.15 and v.9.0 allows a remote attacker to escalate privi…

Risk 86
Severity
9.8
First published (updated )

Zimbra CollaborationCode Injection

Risk 86
Severity
9.8
First published (updated )

Zimbra CollaborationXSS

Risk 38
Severity
6.1
First published (updated )

Zimbra CollaborationCommand Injection

Risk 69
Severity
7.8
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203