Cyber & Digital Crime · Coverage Brief · August 23, 2026

CISA adds exploited Zimbra ZCS flaw to KEV, due Aug. 24

On Aug. 21, CISA added one vulnerability to its Known Exploited Vulnerabilities catalog based on evidence of active exploitation: CVE-2026-73570, an OS command injection in Zimbra Collaboration Suite (ZCS). Federal civilian agencies face a BOD 26-04 remediation due date of Aug. 24. The directive binds FCEB agencies; CISA encourages other organizations to prioritize the same KEV remediation habit.

Left 0 Center 1 Right 0

How outlets across the spectrum are covering this story. We link out — headlines belong to their publishers; the summary above is ours.