CVE-2023-32721: Zabbix

Medium severity, CVSS 5.4. EPSS: 0.6% chance of exploitation in the next 30 days.

A stored XSS has been found in the Zabbix web application in the Maps element if a URL field is set with spaces before URL.

Affected products

  • Zabbix Zabbix: from 4.0.0, up to and including 4.0.47; from 5.0.0, up to and including 5.0.36; from 6.0.0, up to and including 6.0.20; from 6.4.0, up to and including 6.4.5; version 7.0.0 only

Published 2023-10-12. Last modified 2026-06-17.