Zabbix vulnerability

An unauthenticated attacker can exploit the Frontend 'validate' action to blindly instantiate arbitrary PHP classes. The impact depends on environment setup but appears limited at this time.

Published 24 Mar 2026Updated 10 Sep 20261 sources
CVSS 6.9

Record history

Record created from the first normalized source observation.
Metadata and source references refreshed.