Over 10,000 Zimbra servers vulnerable to ongoing XSS attacks
ID: 076f82f1-cef9-5f48-a033-c6139d369cec
STIX ID: report--076f82f1-cef9-5f48-a033-c6139d369cec
Feed Name: Bleeping Computer
Threat Score
**Executive Summary:** Over 10,000 Zimbra Collaboration Suite instances are vulnerable to CVE-2025-48700, a reflected XSS flaw being exploited in the wild; CISA added it to its Known Exploited Vulnerabilities catalog, Synacor released patches in June 2025, yet Shadowserver reports more than 10,500 unpatched servers remain exposed, and similar Zimbra flaws have been abused by APT28 and APT29 in mass phishing campaigns.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
