The U.S. Cybersecurity and Infrastructure Security Agency (CISA) have issued an urgent alert concerning an actively exploited zero-day vulnerability in the Zimbra Collaboration Suite (ZCS). The flaw, identified as CVE-2025-27915, is a cross-site scripting (XSS) vulnerability that impacts the ZCS Classic Web Client.
First seen on thecyberexpress.com
Jump to article: thecyberexpress.com/zimbra-zcs-flaw-cve-2025-27915/
![]()

