
new zimbra cve in the wild CVE-2025-27915, which was exploited in the wild using a malicious ICS file to execute arbitrary Js in users sessions CVE-2026-33372 is a crosssite request forgery vuln act fast and patch the govt zimbra servers ama someone will h... @ICTAuthorityKE
Post summary
The post reports that CVE-2025-27915 is being exploited in the wild via malicious files, while CVE-2026-33372 is identified as a CSRF vulnerability, but provides no PoC, exploit code, or specific patch information.

