Zabbix vulnerability

An unauthenticated attacker can exploit the Frontend 'validate' action to blindly instantiate arbitrary PHP classes. The impact depends on environment setup but appears limited at this time.

Published 24 Mar 2026Updated 10 Sep 20261 sources
CVSS 6.9

Source timeline

CVE record published by NVDView source ↗