vulnerability

Zimbra Collaboration: CVE-2025-25065: SSRF vulnerability.

Severity
5
CVSS
(AV:N/AC:L/Au:N/C:P/I:N/A:N)
Published
Feb 3, 2025
Added
Feb 26, 2025
Modified
Jul 2, 2025

Description

Ssrf vulnerability in the rss feed parser in zimbra collaboration 9.0.0 before patch 43, 10.0.x before 10.0.12, and 10.1.x before 10.1.4 allows unauthorized redirection to internal network endpoints.

Solution

zimbra-collaboration-upgrade-latest
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.