Hackers Target Zimbra Servers in Active Exploitation Campaign

Summary

CERT Polska has observed active exploitation of a vulnerability in Zimbra Collaboration servers, identified as CVE-2026-73570. This indicates a real-world threat to users of the Zimbra platform.

IFF Assessment

FOE

The active exploitation of a vulnerability in a widely used collaboration platform represents a direct threat to organizations and individuals using that platform.

Severity

8.9 High

Defender Context

Organizations using Zimbra Collaboration should prioritize patching this vulnerability immediately due to observed active exploitation. Defenders should monitor their Zimbra instances for any signs of compromise and review access logs for suspicious activity related to CVE-2026-73570.

Read Full Story →