#xss


New WordPress Pre-Auth XSS Could Lead to PHP Code Execution – Patch ASAP

Aug 8, 2026 // 01:06

WordPress has fixed a pre-authentication reflected cross-site scripting (XSS) flaw in its login screen that affects every version of the content management system. pwn.ai demonstrated […]

Zimbra Patches Critical SNMP Command Injection and Four XSS Vulnerabilities

Jul 21, 2026 // 16:21

Zimbra has rolled out fixes to address multiple critical security issues, including a command injection flaw in the Simple Network Management Protocol (SNMP) monitoring component. […]

Zimbra urges customers to patch critical web client XSS flaw

Jul 10, 2026 // 16:56

The Zimbra security team urged customers to patch a critical vulnerability affecting the Classic Web Client used to access the Zimbra Collaboration suite. Zimbra is […]

Over 10,000 Zimbra servers vulnerable to ongoing XSS attacks

Apr 24, 2026 // 16:37

Over 10,000 Zimbra Collaboration Suite (ZCS) instances exposed online are vulnerable to ongoing attacks exploiting a cross-site scripting (XSS) security flaw, according to nonprofit security organization Shadowserver. […]