Skip to content
Critical Microsoft SharePoint Flaw Now Exploited in Attacks

Critical Microsoft SharePoint Flaw Now Exploited in Attacks

Ground.News March 19, 2026

CISA has ordered U.S. government agencies to secure their servers against an actively exploited vulnerability in the Zimbra Collaboration Suite (ZCS).

Cybercriminals are currently attacking vulnerabilities in Cisco FMC, SharePoint and Zimbra. Updates to close the gaps are available.

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has urged government agencies to apply patches for two security flaws impacting Synacor Zimbra Collaboration Suite (ZCS) and Microsoft Office SharePoint, stating they have been actively exploited in the wild. The vulnerabilities in question are as follows CVE-2025-66376 (CVSS score: 7.2) - A stored cross-site scripting

To view factuality data please Upgrade to Premium

To view ownership data please Upgrade to Vantage

Extracted Entities

Industries (1)

Vulnerabilities (1)