Winter Vivern APT exploited zero-day in Roundcube webmail software in recent attacksSecurity Affairs·Oct 26, 05:20 UTC · Oct 26, 2023Exploit / PoCCVE-2020-35730CVE-2022-27926CVE-2023-563160
Winter Vivern: Zero-Day XSS Exploit Targets Roundcube ServersInfosecurity Magazine·Oct 25, 17:00 UTC · Oct 25, 2023Exploit / PoCCVE-2020-35730CVE-2023-563160
Roundcube webmail zero-day exploited to spy on government entities (CVE-2023-5631)Help Net Security·Oct 25, 00:00 UTC · Oct 25, 2023Exploit / PoCCVE-2023-5631CVE-2020-35730CVE-2022-2792660
Nation State Hackers Exploiting ZeroThe Hacker News·Oct 26, 03:42 UTC · Oct 26, 2023Exploit / PoCCVE-2020-35730CVE-2023-563160
Kremlin-linked hackers target webmail servers of Eastern European government agenciesThe Record·May 15, 14:13 UTC · May 15, 2025Exploit / PoC60
Pro-Russia hackers target inboxes with 0Ars Technica · Security·Oct 25, 22:21 UTC · Oct 25, 2023Exploit / PoCCVE-2023-563160
U.S. CISA adds RoundCube Webmail flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Feb 21, 11:19 UTC · Feb 21, 2026Exploit / PoC in the wildCVE-2025-49113CVE-2025-6846160
CISA Adds Two Actively Exploited Roundcube Flaws to KEV CatalogThe Hacker News·Feb 21, 07:21 UTC · Feb 21, 2026Exploit / PoC in the wildCVE-2025-49113CVE-2025-6846160
Zimbra Zero-Day Exploited to Target Brazilian Military via Malicious ICS FilesThe Hacker News·Oct 10, 06:52 UTC · Oct 10, 2025Exploit / PoC in the wildCVE-2025-2791560
U.S. CISA adds RoundCube Webmail and Erlang Erlang/OTP SSH server flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jun 10, 13:34 UTC · Jun 10, 2025Exploit / PoC in the wildCVE-2025-32433CVE-2024-4200960
Critical 10-Year-Old Roundcube Webmail Bug Allows Authenticated Users Run Malicious CodeThe Hacker News·Jun 9, 12:15 UTC · Jun 9, 2025Exploit / PoC in the wildCVE-2025-49113CVE-2024-3738360
Roundcube Webmail under fire: critical exploit found after a decadeSecurity Affairs·Jun 4, 11:35 UTC · Jun 4, 2025Exploit / PoCCVE-2025-4911360
Zero-days exploited in the wild jumped 50% in 2023, fueled by spyware vendorsThe Record·Mar 27, 01:56 UTC · Mar 27, 2024Exploit / PoC in the wildCVE-2023-4863CVE-2023-41064CVE-2023-521760
CISA adds Roundcube Webmail Persistent XSS bug to its Known Exploited Vulnerabilities catalogSecurity Affairs·Feb 12, 18:54 UTC · Feb 12, 2024Exploit / PoC in the wildCVE-2023-43770CVE-2020-3573060
Zero-Day Flaw in Zimbra Email Software Exploited by Four Hacker GroupsThe Hacker News·Nov 17, 03:48 UTC · Nov 17, 2023Exploit / PoCCVE-2023-3758060
Zimbra zero-day exploited to steal government emails by 4 groupsSecurity Affairs·Nov 16, 20:49 UTC · Nov 16, 2023Exploit / PoCCVE-2023-3758060
Hackers target Greece, Tunisia, Moldova, Vietnam and Pakistan with Zimbra zeroThe Record·Nov 16, 17:06 UTC · Nov 16, 2023Exploit / PoCCVE-2023-37580CVE-2022-2468260
Hackers with links to Pro-Russian groups compromised foreign embassies in Belarus, researchers sayCyberScoop·Aug 10, 09:30 UTC · Aug 10, 2023Exploit / PoC in the wild60