Known vulnerabilities in Zabbix Zabbix 6.4.0rc4

Vendor: Zabbix
Website: https://support.zabbix.com/secure/Dashboard.jspa
Total Security Bulletins: 16

Security bulletins (16)

Secuity bulletin Severity Status Published
SB2025100639: Multiple vulnerabilities in Zabbix Medium
Patched
06.10.2025
SB2025092239: Authenticated SQL injection in Zabbix server Low
Patched
22.09.2025
SB2025040348: Two information disclosure vulnerabilities in Zabbix Low
Patched
03.04.2025
SB2025040346: Reflected XSS in Zabbix Low
Patched
03.04.2025
SB2024120557: Security restrictions bypass in Zabbix Low
Patched
05.12.2024
SB2024120556: Denial of service in Zabbix map element feature Low
Patched
05.12.2024
SB2024120541: Privilege escalation in Zabbix Medium
Patched
05.12.2024
SB2024120535: Authenticated SQL injection in Zabbix API High
Patched Public exploit
05.12.2024
SB2024120534: Insufficiently protected credentials in Zabbix Low
Patched
05.12.2024
SB2024120533: Authentication bypass in Zabbix with enabled SSO High
Patched
05.12.2024
SB2024120102: Log file spoofing in Zabbix Low
Patched
01.12.2024
SB2024120101: Multiple vulnerabilities in Zabbix Medium
Patched
01.12.2024
SB20240717129: Stored cross-site scripting in Zabbix Low
Patched
17.07.2024
SB20240717128: Stack-based buffer overflow in Zabbix High
Patched
17.07.2024
SB2024061012: SQL injection in Zabbix Medium
Patched Public exploit
10.06.2024
SB2023080142: Information disclosure in Zabbix Medium
Patched
01.08.2023