CVE-2026-22567: Zscaler Internet Access Admin Portal
Low severity, CVSS 2.7. EPSS: 0.2% chance of exploitation in the next 30 days.
Improper validation of user-supplied input in the ZIA Admin UI could allow an authenticated administrator to initiate backend functions through specific input fields in limited scenarios.
Affected products
- Zscaler Zscaler Internet Access Admin Portal: before 6.2r (fixed in 6.2r)
Published 2026-02-23. Last modified 2026-06-17.