Synacor vendor intelligence

Synacor Known Exploited Vulnerabilities

Track evidence-backed exploitation affecting Synacor products, including the gap beyond CISA KEV, confidence assessments, sensor observations, and practical response context.

Total KEVs
2
Known exploited vulnerabilities affecting Synacor products
In CISA KEV
1
Records also listed in the official catalog
Beyond CISA KEV
1
Additional exploited vulnerabilities absent from CISA KEV
Sensor Observed
1
Synacor KEV with sensor-observed exploitation activity

Review Synacor exploitation against the products you run

Review exploited Synacor vulnerabilities against the products you run. CISA KEV coverage is shown below.

50%
Covered by CISA
50%
Beyond CISA
1
Product families

Attested Synacor vulnerabilities

2 known exploited vulnerabilities in this exploited-vulnerability portfolio. Search, then narrow it to official CISA coverage or the additional records Previdian tracks beyond the catalog.

How exploitation is verified
CVE / description Product Confidence CISA KEV Added
CVE-2018-14013

Synacor Zimbra Collaboration Suite Collaboration before 8.8.11 has XSS in the AJAX and html web clients.

Zimbra Collaboration Suite High Beyond CISA 06 Aug 2026
CVE-2019-9670

mailboxd component in Synacor Zimbra Collaboration Suite 8.7.x before 8.7.11p10 has an XML External Entity injection (XXE) vulnerability, as...

Zimbra Collaboration Suite Confirmed In CISA 10 Jan 2022

Showing 2 of 2 on this page (2 Synacor known exploited vulnerabilities).

Recurring weakness patterns

Restriction and neutralization account for two mapped occurrences across this Synacor KEV portfolio.

Browse all KEVs →