Zimbra Collaboration Suite

by Synacor

Take action — actively targeted

Zimbra Collaboration Suite is actively targeted by attackers. A significant proportion of its known vulnerabilities are being exploited.

What to do
  1. Apply all available updates immediately
  2. Review your exposure — is this internet-facing?
  3. Monitor vendor advisories for this product

What Attackers Target

Vulnerabilities with high exploit probability 27.5%
Confirmed actively exploited (CISA) 20.0%
Public exploit code available 2.5%
Based on 80 known vulnerabilities. Percentages show the proportion that are actively dangerous — a low percentage means most vulnerabilities in this product are not being exploited.

Most Dangerous Vulnerabilities

CVE CVSS Exploit Probability Confirmed
CVE-2019-9670 9.8 94.4% Yes
CVE-2022-37042 9.8 94.3% Yes
CVE-2022-27925 7.2 94.3% Yes
CVE-2024-45519 10.0 94.1% Yes
CVE-2022-27926 6.1 94.1% Yes
CVE-2019-9621 7.5 94.1% Yes
CVE-2022-41352 9.8 94.0% Yes
CVE-2023-37580 6.1 93.9% Yes
CVE-2020-7796 9.8 92.9% Yes
CVE-2022-27924 7.5 91.2% Yes
CVE-2023-34192 9.0 89.0% Yes
CVE-2022-24682 6.1 88.0% Yes
CVE-2018-6882 6.1 79.5% Yes
CVE-2025-68645 8.8 50.1% Yes
CVE-2025-25064 8.8 47.7%
CVE-2019-6980 9.8 40.9%
CVE-2018-14013 6.1 23.0%
CVE-2024-50599 6.1 21.6%
CVE-2025-27915 5.4 17.2% Yes
CVE-2020-12846 8.0 10.9%
58
/ 100
high-risk
Active Threat 38/50 · High
Exploit Availability 20/50 · Moderate

Score uses Wilson score intervals to account for sample size. Products with few CVEs are scored conservatively.