security: Unauthenticated command injection on internet-facing mail servers: tracking CVE-2026-73570
Microsoft Security Blog
2026-09-30
Microsoft Threat Intelligence reports active exploitation of CVE-2026-73570 in Zimbra mail servers. The post covers observed attack paths, ways to detect the activity, and mitigation guidance.