Security
Headlines
HeadlinesLatestCVEs

Headline

Zimbra Releases Security Updates for SQL Injection, Stored XSS, and SSRF Vulnerabilities

Zimbra has released software updates to address critical security flaws in its Collaboration software that, if successfully exploited, could result in information disclosure under certain conditions. The vulnerability, tracked as CVE-2025-25064, carries a CVSS score of 9.8 out of a maximum of 10.0. It has been described as an SQL injection bug in the ZimbraSync Service SOAP endpoint affecting

The Hacker News
#sql#xss#vulnerability#ssrf#The Hacker News

The Hacker News: Latest News

Hackers Exploit Google Tag Manager to Deploy Credit Card Skimmers on Magento Stores