Key Findings Zimbra Collaboration Suite 10.1.20 patches a critical SNMP command injection vulnerability and multiple XSS bugs in the Classic Web Client The SNMP flaw allows arbitrary command execution on servers when SNMP notifications are enabled Four separate XSS vulnerabilities can be triggered through malicious attachment names and crafted input fields Additional patches address EWS access control issues, mailbox delegation flaws, SSRF in Nextcloud integration, and mail-f