CVE-2025-27238
12.09.2025, 11:15
Due to a bug in Zabbix API, the hostprototype.get method lists all host prototypes to users that do not have any user groups assigned to them.Enginsight
| Vendor | Product | Version |
|---|---|---|
| zabbix | zabbix | 7.0.0 ≤ 𝑥 < 7.0.14 |
| zabbix | zabbix | 7.2.0 ≤ 𝑥 < 7.2.8 |
𝑥
= Vulnerable software versions
Debian Releases
Common Weakness Enumeration