cognitive cybersecurity intelligence

News and Analysis

Search

Zimbra Collaboration Server GraphQL Vulnerability Exposes Sensitive User Data

Zimbra Collaboration Server GraphQL Vulnerability Exposes Sensitive User Data

A critical CSRF vulnerability (CVE-2025-32354) in Zimbra Collaboration Server (versions 9.0-10.1) allows unauthorized GraphQL operations, compromising user data. The flaw enables attackers to manipulate authenticated users, leading to risks such as modifying contacts and exfiltrating sensitive information. Zimbra has issued patches for version 10.1.4, urging immediate upgrades to mitigate risks.

Source: cybersecuritynews.com –

Subscribe to newsletter

Subscribe to HEAL Security Dispatch for the latest healthcare cybersecurity news and analysis.

More Posts