CVE-2026-23931
EUVD-2026-6073618.08.2026, 13:17
The frontend validatate.api.exists action can be exploited by authenticated users to extract plaintext user macro values leading to potential loss of confidentiality.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| zabbix | zabbix | 7.4.0 ≤ 𝑥 < 7.4.11 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases