CVE-2023-31209: Checkmk

High severity, CVSS 8.8. EPSS: 1.1% chance of exploitation in the next 30 days.

Improper neutralization of active check command arguments in Checkmk < 2.1.0p32, < 2.0.0p38, < 2.2.0p4 leads to arbitrary command execution for authenticated users.

Affected products

  • Checkmk Checkmk: version 2.0.0 only; version 2.1.0 only; version 2.2.0 only
  • TRIBE29 Checkmk: before 2.0.0 (fixed in 2.0.0)

Published 2023-08-10. Last modified 2026-06-17.