In Zimbra Collaboration before 8.8.15 Patch 1, there is a non-persistent XSS vulnerability.
{
"cpe": [
"cpe:2.3:a:zimbra:collaboration_server:*:*:*:*:*:*:*:*",
"cpe:2.3:a:zimbra:collaboration_server:8.8.15:-:*:*:*:*:*:*"
],
"extracted_events": [
{
"introduced": "0"
},
{
"fixed": "8.8.15"
},
{
"introduced": "8.8.15-NA"
},
{
"last_affected": "8.8.15-NA"
}
],
"source": [
"CPE_RANGE",
"CPE_STRING"
]
}