logo

Over 10,000 Zimbra servers vulnerable to ongoing XSS attacks

ID: 076f82f1-cef9-5f48-a033-c6139d369cec

STIX ID: report--076f82f1-cef9-5f48-a033-c6139d369cec

Feed Name: Bleeping Computer

Threat Score
85/100

Date Published: 2026-04-24

Date Updated: 2026-04-24

Author: Sergiu Gatlan

...
...

**Executive Summary:** Over 10,000 Zimbra Collaboration Suite instances are vulnerable to CVE-2025-48700, a reflected XSS flaw being exploited in the wild; CISA added it to its Known Exploited Vulnerabilities catalog, Synacor released patches in June 2025, yet Shadowserver reports more than 10,500 unpatched servers remain exposed, and similar Zimbra flaws have been abused by APT28 and APT29 in mass phishing campaigns.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.