CVE-2024-42329: Zabbix

Low severity, CVSS 3.3. EPSS: 0.2% chance of exploitation in the next 30 days.

The webdriver for the Browser object expects an error object to be initialized when the webdriver_session_query function fails. But this function can fail for various reasons without an error description and then the wd->error will be NULL and trying to read from it will result in a crash.

Affected products

  • Zabbix Zabbix: from 7.0.0, before 7.0.4 (fixed in 7.0.4)

Published 2024-11-27. Last modified 2026-06-17.