tech π‘οΈ CISA flags Zimbra bug as actively exploited vulnerability
CISA added an actively exploited bug in the Zimbra Collaboration Suite to its Known Exploited Vulnerabilities list. This vulnerability affects Zimbra users across various government agencies and institutions in Brazil, Argentina, and Europe. The bug, CVE-2026-73570, was patched by Zimbra on July 20th, and CISA gave federal agencies three days to apply the fix. Security experts warn that unauthenticated attackers can achieve remote code execution via a command injection weakness in the SNMP component. Organizations must patch immediately because these state-linked APT groups continue to target this platform. π¨