Skip to content
Threat Note Threat Note

Aggregating Cyber Insights

  • Articles
  • Breaches
  • Learning
  • News
  • Podcast
  • Research
  • Toolkit
  • Vulnerabilities
  • Webinars
  • About Us
  • Home
  • News
  • From The Hacker News – Zimbra Releases Security Updates for SQL Injection, Stored XSS, and SSRF Vulnerabilities
From The Hacker News – Zimbra Releases Security Updates for SQL Injection, Stored XSS, and SSRF Vulnerabilities
Posted inNews

From The Hacker News – Zimbra Releases Security Updates for SQL Injection, Stored XSS, and SSRF Vulnerabilities

Posted by shaikh Saqib February 10, 2025

Zimbra has released software updates to address critical security flaws in its Collaboration software that, if successfully exploited, could result in information disclosure under certain conditions.
The vulnerability, tracked as CVE-2025-25064, carries a CVSS score of 9.8 out of a maximum of 10.0. It has been described as an SQL injection bug in the ZimbraSync Service SOAP endpoint affecting Read More

Tags:
CVE-2025-25064CVE-2025-25065cyber awarenesscyber defensecyber protectioncybersecuritycybersecurity best practices.cybersecurity newscybersecurity vulnerability fixdata breachesdigital privacyemail metadata exposureenterprise email securityhackinghacking newsinformation disclosure riskinfosecinfosec newsinput sanitization enhancementnetwork securitynoteonline securityRSS feed parser vulnerabilitysecure software updatesecurity perspectivesecurity updatesserver-side request forgery (SSRF)SQL injection vulnerabilitystored cross-site scripting (XSS)threatthreat intelligencethreat notethreatnoteZimbra 10.0.12 updateZimbra 10.1.4 patchZimbra 9.0.0 Patch 44Zimbra Classic Web Client flawZimbra Collaboration security patchZimbra security advisoryZimbra security updateZimbraSync Service SOAP endpoint
Last updated on February 10, 2025

Latest Posts

  • From Dark Reading – Has CISA Finally Found Its New Leader in Tom Parker?May 7, 2026
  • From Cyber Security News – New Ivanti EPMM 0-Day Vulnerability Actively Exploited in AttacksMay 7, 2026
  • From Cyber Security News – CISA Warns of Palo Alto PAN-OS Vulnerability Exploited to Gain Root AccessMay 7, 2026
  • From Cyber Security News – New Cisco Network Vulnerability Let Remote Attacker Cause DoS AttackMay 7, 2026
  • From Security Week – Palo Alto Zero-Day Exploited in Campaign Bearing Hallmarks of Chinese State HackingMay 7, 2026
Total Visitors
1495036

Archives

  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025
  • April 2025
  • March 2025
  • February 2025
  • January 2025
  • December 2024
  • November 2024
  • October 2024
  • September 2024
  • August 2024
  • July 2024
  • June 2024
  • May 2024
  • April 2024
  • March 2024
  • February 2024
  • January 2024
  • December 2023
  • November 2023
  • October 2023
  • September 2023
  • August 2023
  • July 2023
  • June 2023
  • May 2023
  • April 2023
  • February 2023
  • December 2022
  • November 2022
  • May 2022
Copyright 2026 — Threat Note. All rights reserved. Bloghash WordPress Theme
Scroll to Top