Mobble
Technology · Cybersecurity · published 2026-08-24 · via BleepingComputer

CISA mandates three-day patch for exploited Zimbra vulnerability

CISA has ordered U.S. federal agencies to patch CVE-2026-73570, an actively exploited command injection flaw in Zimbra Collaboration Suite's SNMP component, within three days. The vulnerability allows unauthenticated remote code execution and was patched in version 10.1.20. CERT Polska first flagged in-the-wild attacks, and Shadowserver found over 270 compromised Zimbra instances.

Read the full article at BleepingComputer →
Related stories
Over 270 Zimbra servers compromised in ongoing RCE attacks · Cybersecurity
This summary is AI-generated and original to Mobble; the linked article is the authoritative source. Original headline: “CISA orders urgent patching of actively exploited Zimbra flaw.” Browse more stories.