Vulnerability Bulletins

CVE-2025-49643

   
Affected software ZABBIX
 
An authenticated Zabbix user (including Guest) is able to cause disproportionate CPU load on the webserver by sending specially crafted parameters to /imgstore.php, leading to potential denial of service.

Link:

https://nvd.nist.gov/vuln/detail/CVE-2025-49643