Products: 2
    Vulnerabilities: 94
    Known Exploited: 19
    13
    Critical Level Threats
    20
    High Level Threats
    57
    Medium Level Threats
    4
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2026-73576

    Weak JWT Signing Secret Generation Enables Token Forgery in Zimbra Collaboration

    Last Modified: Aug 28, 2026
    Published: Aug 13, 2026

    CVE-2026-73575

    In Zimbra Collaboration (ZCS) before 10.1.17, a Cross-Site Request Forgery (CSRF) vulnerability exists in the Exchange Web Services (EWS) endpoint of Zimbra Collaboration (ZCS) due to insufficient validation of request content types. An attacker can exploit this vulnerability by causing an authenticated user to submit a crafted request, potentially allowing unauthorized actions to be performed on behalf of the victim.

    Last Modified: Aug 28, 2026
    Published: Aug 13, 2026

    CVE-2026-73574

    Local File Inclusion Allows Unauthorized Disclosure of Sensitive Files in Zimbra Classic Web Client

    Last Modified: Aug 28, 2026
    Published: Aug 13, 2026

    CVE-2026-73573

    Zimbra Briefcase Path Traversal Vulnerability Allowing Sensitive File Disclosure

    Last Modified: Aug 28, 2026
    Published: Aug 13, 2026

    CVE-2026-73572

    Stored XSS with Inline Attachment Preview in Zimbra Classic Web Client

    Last Modified: Aug 28, 2026
    Published: Aug 13, 2026
    Items Per Page
    Synacor Vulnerabilities & Security CVEs | CVE-DB