As cited
Copy frozen at (site build).
vulnerabilities
Zimbra urges customers to patch critical web client XSS flaw
Zimbra has advised customers to patch a critical cross-site scripting (XSS) vulnerability in its Classic Web Client component of the Zimbra Collaboration suite. The flaw could allow attackers to execute malicious scripts in users' browsers and compromise email accounts and data.
Why it matters: Organizations running Zimbra Collaboration are at immediate risk of account compromise and data theft if they do not apply the patch; administrators should prioritize this update.
- Source published
- First seen by Cybersecurity Tracker