CVE-2026-23934EPSS p27.0%
CVE-2026-23934CVE-2026-23934
zabbix / zabbix
Description
An authenticated user is able to cause disproportionate CPU load on the Frontend webserver by sending specifically crafted requests to the Frontend validate.api.exists action, leading to potential denial of service.
Scoring
| CVSS | 6.5 () |
| Vector | CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
| EPSS | 0.36% probability of exploitation · percentile 27.0% · 2026-10-05T12:00:23Z |
| Last modified | 2026-09-23 |