The U.S. Cybersecurity and Infrastructure Security Agency issued an urgent directive on August 27, 2026 ordering all federal agencies to patch a critical remote code execution vulnerability in Citrix NetScaler appliances by Saturday, citing active exploitation.
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) issued a three-day deadline on August 24, 2026, for federal civilian agencies to patch CVE-2026-73570, an actively exploited vulnerability in Zimbra Collaboration Suite that allows full takeover of user communications.
CERT Polska warned on 20 August 2026 that threat actors were actively exploiting a critical remote code execution vulnerability (CVE-2026-73570) in Zimbra Collaboration Suite across multiple systems. Zimbra released patches for nine vulnerabilities, with the RCE flaw posing immediate risk to mail server installations worldwide.