The U.S. Cybersecurity and Infrastructure Security Agency (CISA) warned organizations and users about active exploitation of a vulnerability impacting Synacor Zimbra Collaboration Suite (ZCS). CISA added the vulnerability to its Known Exploited Vulnerabilities Catalog, urging users to patch before April 1, 2026. CISA also warned users to follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable. Tracked as CVE-2025-66376, Syncor patched … Continue reading “CISA Added Zimbra Vulnerability to its Known Exploited Vulnerabilities Catalog (CVE-2025-66376)”