Apply the security updates released by Zimbra to address CVE-2026-73570 immediately. Restrict or disable the SNMP interface on Zimbra servers if patching is not immediately possible. Monitor for unusual SNMP traffic and audit system logs for signs of exploitation.
Quick answers
What is CVE-2026-73570?
Apply the security updates released by Zimbra to address CVE-2026-73570 immediately. Restrict or disable the SNMP interface on Zimbra servers if patching is not immediately possible. Monitor for unusual SNMP traffic and audit system logs for signs of exploitation.
How severe is CVE-2026-73570?
high, CVSS 8.9
Is CVE-2026-73570 known to be exploited?
It is not marked known-exploited in this record.
How should CVE-2026-73570 be mitigated?
Apply the security updates released by Zimbra to address CVE-2026-73570 immediately. Restrict or disable the SNMP interface on Zimbra servers if patching is not immediately possible. Monitor for unusual SNMP traffic and audit system logs for signs of exploitation.
CVSS
8.9
Vendor
Zimbra
Published
Sep 30, 2026 · 08:43
Patch
Unknown / not confirmed
Affected products
Zimbra Collaboration Suite
Mitigation
Apply the security updates released by Zimbra to address CVE-2026-73570 immediately. Restrict or disable the SNMP interface on Zimbra servers if patching is not immediately possible. Monitor for unusual SNMP traffic and audit system logs for signs of exploitation.
The Cybersecurity and Infrastructure Security Agency (CISA) has added CVE-2026-73570, an OS Command Injection vulnerability in Zimbra Collaboration Suite, to its Known Exploited Vulnerabilities (KEV) Catalog. The addition is based on evidence of active exploitation in the wild. CISA's Binding Operational Directive 26-04 requires Federal Civilian Executive Branch agencies to prioritize rapid remediation of this vulnerability on publicly exposed assets and to assess whether systems were compromised before patching.
The Cybersecurity and Infrastructure Security Agency (CISA) has added CVE-2026-73570 to its Known Exploited Vulnerabilities (KEV) catalog, issuing a binding three-day remediation deadline for civilian federal agencies. The flaw affects Zimbra Collaboration Suite and is reported to allow full takeover of a user's communications. The advisory underscores the shrinking window between vulnerability disclosure and active exploitation, urging immediate patching across all affected deployments.
CERT Polska has confirmed that attackers are actively exploiting CVE-2026-73570, a command injection vulnerability in the SNMP interface of Zimbra Collaboration Suite. The flaw allows unauthenticated remote code execution with a CVSS score of 8.9. Zimbra has released patches to address the vulnerability, and immediate application is recommended to prevent system compromise.