CVE-2026-59785
EUVD-2026-9239705.10.2026, 11:16
Host search in Frontend allows filtering by fields that are not displayed, including stored IPMI and PSK credentials. A user with read access can guess a credential and see from the search result whether the guess was right, letting them uncover it.Enginsight
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| zabbix | zabbix | 6.0.0 ≤ 𝑥 ≤ 6.0.47 | CNA |
| zabbix | zabbix | 7.0.0 ≤ 𝑥 ≤ 7.0.28 | CNA |
| zabbix | zabbix | 7.4.0 ≤ 𝑥 ≤ 7.4.12 | CNA |
Debian Releases
Common Weakness Enumeration
Vulnerability Media Exposure