CVE-2023-32721: Zabbix
Medium severity, CVSS 5.4. EPSS: 0.6% chance of exploitation in the next 30 days.
A stored XSS has been found in the Zabbix web application in the Maps element if a URL field is set with spaces before URL.
Affected products
- Zabbix Zabbix: from 4.0.0, up to and including 4.0.47; from 5.0.0, up to and including 5.0.36; from 6.0.0, up to and including 6.0.20; from 6.4.0, up to and including 6.4.5; version 7.0.0 only
Published 2023-10-12. Last modified 2026-06-17.