← Zurück zur CVE-Suche

CVE-2026-33276

Checkmk

Beschreibung

Stored cross-site scripting (XSS) in Checkmk 2.5.0 (beta) before 2.5.0b2 allows authenticated users with permission to create hosts or services to execute arbitrary JavaScript in the browsers of other users performing searches in the Unified Search feature.

CVSS 5.4EPSS 0.14400000000000002%Risiko 0.55
Quelle öffnen
Veröffentlicht
2026-03-31 15:16:14
Betroffene Versionen
<2.5.0b2
Typ
Core software
Zuletzt geändert
2026-07-24 21:10:00
Vektor
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N