Rapid7

vulnerability

Zimbra Collaboration: CVE-2023-4863: Collaboration: Out-of-bounds Write

Severity
9
CVSS
(AV:N/AC:M/Au:N/C:C/I:C/A:C)
Published
Sep 12, 2023
Added
Jan 20, 2025
Modified
Mar 25, 2026

Description

Upgraded Electron framework used in Modern Zimbra Desktop to version 28.0.0, This update mitigates potential security risks associated with the outdated Electron version 11.5.0.

Solution

zimbra-collaboration-upgrade-latest

References

    Title
    Rapid7 Labs

    2026 Global Threat Landscape Report

    The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.