CVE-2023-29451: Zabbix

High severity, CVSS 7.5. EPSS: 0.8% chance of exploitation in the next 30 days.

Specially crafted string can cause a buffer overrun in the JSON parser library leading to a crash of the Zabbix Server or a Zabbix Proxy.

Affected products

  • Zabbix Zabbix: up to and including 6.0.14; from 6.4.2, up to and including 6.4.4; version 6.4.0 only

Published 2023-07-13. Last modified 2026-06-17.