CVE-2023-29454: Zabbix Frontend
Medium severity, CVSS 5.4. EPSS: 0.6% chance of exploitation in the next 30 days.
Stored or persistent cross-site scripting (XSS) is a type of XSS where the attacker first sends the payload to the web application, then the application saves the payload (e.g., in a database or server-side text files), and finally, the application unintentionally executes the payload for every victim visiting its web pages.
Affected products
- Zabbix Frontend: from 4.0.0, up to and including 4.0.45; from 5.0.0, up to and including 5.0.33; from 6.0.0, up to and including 6.0.16
Published 2023-07-13. Last modified 2026-06-17.