<?xml version="1.0" encoding="utf-8"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://exploit-radar.com/en/flux/marques/zimbra.xml</id>
  <title>Exploit Radar: exploited Zimbra (Synacor) vulnerabilities</title>
  <subtitle>The latest additions to CISA’s catalog of exploited vulnerabilities for Zimbra (Synacor) products.</subtitle>
  <link rel="self" type="application/atom+xml" href="https://exploit-radar.com/en/flux/marques/zimbra.xml"/>
  <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/marques/zimbra/"/>
  <updated>2026-08-21T00:00:00Z</updated>
  <author><name>Exploit Radar</name></author>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2026-73570/</id>
    <title>CVE-2026-73570 — Zimbra (Synacor) Collaboration Suite (ZCS)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2026-73570/"/>
    <updated>2026-08-21T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Zimbra (Synacor); if none are available, stop using the product. Start with internet-facing devices. CISA also asks you to hunt for signs of compromise: patching is not enough if the device has already been breached. CISA deadline: 3 days. Added to CISA’s catalog of exploited vulnerabilities on August 21, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2025-48700/</id>
    <title>CVE-2025-48700 — Zimbra (Synacor) Collaboration Suite (ZCS)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2025-48700/"/>
    <updated>2026-04-20T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Zimbra (Synacor); if none are available, stop using the product. For cloud services, follow the guidance from Zimbra (Synacor). CISA deadline: 3 days. Added to CISA’s catalog of exploited vulnerabilities on April 20, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2025-66376/</id>
    <title>CVE-2025-66376 — Zimbra (Synacor) Collaboration Suite (ZCS)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2025-66376/"/>
    <updated>2026-03-18T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Zimbra (Synacor); if none are available, stop using the product. For cloud services, follow the guidance from Zimbra (Synacor). CISA deadline: 14 days. Added to CISA’s catalog of exploited vulnerabilities on March 18, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2020-7796/</id>
    <title>CVE-2020-7796 — Zimbra (Synacor) Collaboration Suite (ZCS)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2020-7796/"/>
    <updated>2026-02-17T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Zimbra (Synacor); if none are available, stop using the product. For cloud services, follow the guidance from Zimbra (Synacor). CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on February 17, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2025-68645/</id>
    <title>CVE-2025-68645 — Zimbra (Synacor) Collaboration Suite (ZCS)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2025-68645/"/>
    <updated>2026-01-22T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Zimbra (Synacor); if none are available, stop using the product. For cloud services, follow the guidance from Zimbra (Synacor). CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on January 22, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2025-27915/</id>
    <title>CVE-2025-27915 — Zimbra (Synacor) Collaboration Suite (ZCS)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2025-27915/"/>
    <updated>2025-10-07T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Zimbra (Synacor); if none are available, stop using the product. For cloud services, follow the guidance from Zimbra (Synacor). CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on October 7, 2025.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2019-9621/</id>
    <title>CVE-2019-9621 — Zimbra (Synacor) Collaboration Suite (ZCS)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2019-9621/"/>
    <updated>2025-07-07T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Zimbra (Synacor); if none are available, stop using the product. For cloud services, follow the guidance from Zimbra (Synacor). CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on July 7, 2025.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2024-27443/</id>
    <title>CVE-2024-27443 — Zimbra (Synacor) Collaboration Suite (ZCS)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2024-27443/"/>
    <updated>2025-05-19T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Zimbra (Synacor); if none are available, stop using the product. For cloud services, follow the guidance from Zimbra (Synacor). CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on May 19, 2025.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2023-34192/</id>
    <title>CVE-2023-34192 — Zimbra (Synacor) Collaboration Suite (ZCS)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2023-34192/"/>
    <updated>2025-02-25T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Zimbra (Synacor); if none are available, stop using the product. For cloud services, follow the guidance from Zimbra (Synacor). CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on February 25, 2025.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2024-45519/</id>
    <title>CVE-2024-45519 — Zimbra (Synacor) Collaboration Suite (ZCS)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2024-45519/"/>
    <updated>2024-10-03T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Zimbra (Synacor); if none are available, stop using the product. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on October 3, 2024.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2023-37580/</id>
    <title>CVE-2023-37580 — Zimbra (Synacor) Collaboration Suite (ZCS)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2023-37580/"/>
    <updated>2023-07-27T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Zimbra (Synacor); if none are available, stop using the product. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on July 27, 2023.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2022-27926/</id>
    <title>CVE-2022-27926 — Zimbra (Synacor) Collaboration Suite (ZCS)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2022-27926/"/>
    <updated>2023-04-03T00:00:00Z</updated>
    <summary type="text">Apply the security update from Zimbra (Synacor). CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on April 3, 2023.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2022-41352/</id>
    <title>CVE-2022-41352 — Zimbra (Synacor) Collaboration Suite (ZCS)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2022-41352/"/>
    <updated>2022-10-20T00:00:00Z</updated>
    <summary type="text">Apply the security update from Zimbra (Synacor). CISA deadline: 21 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on October 20, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2022-37042/</id>
    <title>CVE-2022-37042 — Zimbra (Synacor) Collaboration Suite (ZCS)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2022-37042/"/>
    <updated>2022-08-11T00:00:00Z</updated>
    <summary type="text">Apply the security update from Zimbra (Synacor). CISA deadline: 21 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on August 11, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2022-27925/</id>
    <title>CVE-2022-27925 — Zimbra (Synacor) Collaboration Suite (ZCS)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2022-27925/"/>
    <updated>2022-08-11T00:00:00Z</updated>
    <summary type="text">Apply the security update from Zimbra (Synacor). CISA deadline: 21 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on August 11, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2022-27924/</id>
    <title>CVE-2022-27924 — Zimbra (Synacor) Collaboration Suite (ZCS)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2022-27924/"/>
    <updated>2022-08-04T00:00:00Z</updated>
    <summary type="text">Apply the security update from Zimbra (Synacor). CISA deadline: 21 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on August 4, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2018-6882/</id>
    <title>CVE-2018-6882 — Zimbra (Synacor) Collaboration Suite (ZCS)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2018-6882/"/>
    <updated>2022-04-19T00:00:00Z</updated>
    <summary type="text">Apply the security update from Zimbra (Synacor). CISA deadline: 21 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on April 19, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2022-24682/</id>
    <title>CVE-2022-24682 — Zimbra (Synacor) Collaboration Suite (ZCS)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2022-24682/"/>
    <updated>2022-02-25T00:00:00Z</updated>
    <summary type="text">Apply the security update from Zimbra (Synacor). CISA deadline: 14 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on February 25, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2019-9670/</id>
    <title>CVE-2019-9670 — Zimbra (Synacor) Collaboration Suite (ZCS)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2019-9670/"/>
    <updated>2022-01-10T00:00:00Z</updated>
    <summary type="text">Apply the security update from Zimbra (Synacor). CISA deadline: 181 days. Added to CISA’s catalog of exploited vulnerabilities on January 10, 2022.</summary>
  </entry>
</feed>
