CVE-2026-59782: Zabbix
Medium severity, CVSS 6.9. EPSS: 0.2% chance of exploitation in the next 30 days.
The JavaScript preprocessing (Duktape) engine on Zabbix server has a vulnerability where a limited administrator is able to read raw heap data potentially resulting in leaked data from other running preprocessors not available to said administrator.
Affected products
- Zabbix Zabbix
Published 2026-10-05. Last modified 2026-10-06.