CVE-2019-13072: Zoneminder

Medium severity, CVSS 5.4. EPSS: 0.9% chance of exploitation in the next 30 days.

Stored XSS in the Filters page (Name field) in ZoneMinder 1.32.3 allows a malicious user to embed and execute JavaScript code in the browser of any user who navigates to this page.

Affected products

Published 2019-06-30. Last modified 2026-06-17.