claytonvantol.us
SESSION: secure TLS: 1.3 PID: 1337

clayton@site:~/news$ cat cve-2022-27926-synacor-zimbra-collaboration-suite-zcs.log

CVE-2022-27926 — Synacor Zimbra Collaboration Suite (ZCS) Cross-Site Scripting (XSS) Vulnerability

2023-04-03 • CISA Known Exploited Vulnerability


[event] Synacor Zimbra Collaboration Suite (ZCS) contains a cross-site scripting vulnerability by allowing an endpoint URL to accept parameters without sanitizing.

> AFFECTED SOFTWARE

Field Value
Vendor Synacor
Product Zimbra Collaboration Suite (ZCS)
CWE CWE-79, CWE-138
CVE ID CVE-2022-27926
Date Added 2023-04-03
Due Date 2023-04-24
Ransomware Campaign Unknown

> MITIGATION

Apply updates per vendor instructions.

Due Date: 2023-04-24

> REFERENCES


← back to terminal

UPTIME: 1337d v2.0.1 privacy LAST LOGIN: 2026-05-30 20:36:11 UTC