CVE-2026-59787
EUVD-2026-9239905.10.2026, 11:16
The Perl SNMP trap receiver script shipped with Zabbix does not properly neutralize the ZBXTRAP record delimiter in trap content. This means someone able to send SNMP traps can inject a record targeting another host, resulting in a loss of integrity.Enginsight
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| zabbix | zabbix | 6.0.0 ≤ 𝑥 ≤ 6.0.47 | CNA |
| zabbix | zabbix | 7.0.0 ≤ 𝑥 ≤ 7.0.28 | CNA |
| zabbix | zabbix | 7.4.0 ≤ 𝑥 ≤ 7.4.12 | CNA |
Debian Releases
Vulnerability Media Exposure