Announcements

Synacor Zimbra Collaboration Suite (ZCS): Zimbra Collaboration Suite (ZCS) OS Command Injection Vulnerability

  • 21st August 2026
A security vulnerability has been identified in the Zimbra Collaboration Suite (ZCS), a platform used for email, calendar, and team collaboration tools on some hosting accounts. The flaw is an operating system command injection issue.An unauthenticated attacker (someone who does not have a valid login to your Zimbra service) could send specially ...
Continue reading

MA-1471.072026: MyCERT Advisory - Microsoft SharePoint Hardening After New Exploitations

  • 21st August 2026
On July 20, 2026, cybersecurity agency MyCERT released a new security advisory focused on securing Microsoft SharePoint, a widely used platform for business collaboration, document storage, and internal site management. The advisory was issued in response to new reports of active exploitation attempts targeting the software.If your organization ...
Continue reading

MA-1472.072026: MyCERT Advisory - Microsoft Active Directory Federation Services Insufficient Granularity of Access Control Vulnerability

  • 21st August 2026
MyCERT released security advisory MA-1472.072026 on 22 July 2026, flagging a vulnerability in Microsoft Active Directory Federation Services (AD FS), a tool many organizations use to manage user logins and access rules for their websites and online platforms. The issue stems from the system’s access controls lacking sufficient precision. For ...
Continue reading

MA-1473.072026: MyCERT Advisory - Microsoft SharePoint Server Missing Authentication for Critical Function Vulnerability

  • 21st August 2026
A security advisory from MyCERT was published on July 22, 2026, flagging a vulnerability in Microsoft SharePoint Server. The flaw is categorized as a missing authentication for critical function issue. This means a core, protected component of SharePoint that is intended to only be accessible to authorized, logged-in users may be reachable by ...
Continue reading