CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

[NEW] [high] Synacor Zimbra: Multiple vulnerabilities

highCVE-2026-10631CVE-2026-50054CVE-2026-50055
An attacker can exploit multiple vulnerabilities in Synacor Zimbra to execute arbitrary code, perform cross-site scripting attacks, bypass security measures, disclose confidential information, and carry out unauthorized actions.

CSIRTS triage

What
Multiple vulnerabilities in Synacor Zimbra can be exploited to execute arbitrary code and perform various attacks.
Who is affected
Users and administrators of Synacor Zimbra.
Urgency
Remediation is high priority due to the potential for severe exploitation.
Action
Review the advisory and apply the necessary updates.

AI-assisted analysis generated from the source advisory — verify against the original.

⚡ Watch Zimbra

Get an email when a new Zimbra advisory drops — max one per day, one-click unsubscribe.

Details

Source
CERT-Bund (BSI) Security Advisories (DE · national-cert · site)
Severity
high
Published
2026-07-21
Exploitation
Not in CISA KEV at last sync
Language
Machine-translated to English — verify against the original

Original advisory: https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2026-2429

Referenced CVEs

CVECSIRTS overviewExternal
CVE-2026-10631coverage & exploitation statusNVD · CVE.org
CVE-2026-50054coverage & exploitation statusNVD · CVE.org
CVE-2026-50055coverage & exploitation statusNVD · CVE.org

Recent advisories for Synacor Zimbra

A cluster of recent advisories against the same product widens the attack surface — attackers routinely chain freshly published CVEs on one product, so review these together.

More from CERT-Bund (BSI) Security Advisories