Mailcow Patches Critical XSS and File Overwrite Flaws

Mailcow Patches Critical XSS and File Overwrite Flaws

Researchers at SonarCloud have discovered critical security vulnerabilities in Mailcow, a popular open-source email server solution, that could have allowed attackers to execute malicious code on vulnerable systems “with a single email viewed by an admin.” Here are the details...
CISA Urges Organizations to Patch Actively Exploited Zimbra XSS Vulnerability

CISA Urges Organizations to Patch Actively Exploited Zimbra XSS Vulnerability

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Friday introduced that it has expanded its Known Exploited Vulnerabilities Catalog with a zero-day lately recognized within the Zimbra electronic mail platform. Tracked as CVE-2022-24682, the safety gap was made public...