Cybersecurity and Infrastructure Security Agency (CISA) have added to its Known Exploited Vulnerabilities (KEV) Catalog. They included two serious flaws that cybercriminals are using. These flaws are a dangerous remote code execution (RCE) issue in Microsoft SharePoint and a stored cross-site scripting (XSS) problem in Zimbra Collaboration Suite. This shows the ongoing danger to both government and private businesses.
The worst of the two, CVE-2026-20963, is a serious security issue in Microsoft SharePoint. It has a CVSS score of 9.8. This problem comes from “deserialization of untrusted data,” a common weakness that lets an attacker run code over a network without any login details.
By infosecbulletin
/ Monday , August 24 2026
A mysterious AI model dubbed "Ox Alpha" has surfaced online and created noise within the developer community after releasing on...
Read More
By infosecbulletin
/ Monday , August 24 2026
A group of hackers named “Madarax” claims they have stolen and are offering to sell the personal information of about...
Read More
By infosecbulletin
/ Monday , August 24 2026
A new hacking technique has been demonstrated to steal data from Elon Musk's Grok AI. It uses a simple trick...
Read More
By infosecbulletin
/ Sunday , August 23 2026
More than 9,300 AWS access keys that were made public from August 2022 to August 2026 are still active, says...
Read More
By infosecbulletin
/ Sunday , August 23 2026
US Bank is looking into LockBit's claims about a breach and stolen data. The ransomware group says they will share...
Read More
By infosecbulletin
/ Friday , August 21 2026
Central Asian government agencies have been attacked in a cyber spy operation that used a small but different range of...
Read More
By infosecbulletin
/ Friday , August 21 2026
T-Mobile’s cybersecurity team reportedly physically cut a network cable connecting compromised infrastructure to the outside world. According to Bloomberg, the move...
Read More
By infosecbulletin
/ Friday , August 21 2026
Splunk has issued security fixes for 17 weaknesses in different apps and add-ons, such as Splunk MCP Server, Splunk AI...
Read More
By infosecbulletin
/ Friday , August 21 2026
Security experts have shown that expired credit cards can still be used. A study from the University of Massachusetts Amherst,...
Read More
By infosecbulletin
/ Thursday , August 20 2026
CERT Polska has alerted that bad actors are actively exploiting a security flaw in Zimbra Collaboration Suite to execute code...
Read More
In a typical network-based attack, a malicious actor could “write arbitrary code to inject and execute code remotely on the SharePoint Server”. Microsoft fixed this issue during its January Patch Tuesday. The bug moving to the KEV catalog means that hackers are still finding and attacking servers that have not been fixed.
The second addition, CVE-2025-66376, affects the Synacor Zimbra Collaboration Suite (ZCS). This weakness lets attackers perform “Classic UI stored XSS through CSS @import commands in an HTML email.”
An attacker can create a special email that has harmful styles. When the email is opened, these styles can make scripts run in the victim’s browser. This affects ZCS version 10 (before 10.0.18) and version 10.1 (before 10.1.13).
These vulnerabilities are common targets for hackers and can be very risky. The CISA rules mainly apply to federal agencies, but the KEV list is important for security teams all around. If CISA warns it’s being used in attacks, your organization is probably in danger if you haven’t made updates.