Mmastodon TechnologyCybersecurity first seen 8 h ago, last 8 h ago, peak #12
Zoho's poor trust score raises patching concerns
Original: Zoho holds a D trust score with 38 CVEs, 2 in CISA KEV, and 100% unpatched. SQLi and XSS dominate. Patch or pivot. https
A cybersecurity assessment gives Zoho a D trust score, citing 38 known vulnerabilities, two of which are listed in CISA's Known Exploited Vulnerabilities catalog, with none of the flaws patched. SQL injection and cross-site scripting account for most of the reported issues. Security commentators are urging organizations using Zoho products to either apply fixes promptly or reconsider the vendor.
Why now: The finding that all 38 CVEs remain unpatched, including two actively exploited ones, is prompting warnings for businesses to reassess their reliance on Zoho.
Evidence
API: https://socialmediatrends-api.osmike.com/v1/trends/814322