Zimbra Announces Security Patches for SQL Injection, Stored XSS, and SSRF Weaknesses

Zimbra has rolled out software patches to fix crucial security vulnerabilities in its Collaboration software that, if exploited, might lead to the exposure of sensitive information in specific scenarios.

Zimbra has rolled out software patches to fix crucial security vulnerabilities in its Collaboration software that, if exploited, might lead to the exposure of sensitive information in specific scenarios.
The weakness, identified as CVE-2025-25064, has a CVSS score of 9.8 out of 10.0. It is categorized as an SQL injection flaw in the ZimbraSync Service SOAP endpoint impacting

About Author

Subscribe To InfoSec Today News

You have successfully subscribed to the newsletter

There was an error while trying to send your request. Please try again.

World Wide Crypto will use the information you provide on this form to be in touch with you and to provide updates and marketing.