Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Update the affected components to their respective fixed versions.
Tracking
Sign in to view the affected projects.
No advisories yet.
| Link | Providers |
|---|---|
| https://support.zabbix.com/browse/ZBX-28075 |
|
Tue, 18 Aug 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Zabbix
Zabbix zabbix |
|
| Vendors & Products |
Zabbix
Zabbix zabbix |
Tue, 18 Aug 2026 12:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An authenticated administrator is able to crash Zabbix server or proxy by creating specifically crafted preprocessing/script item JavaScript scripts, leading to potential denial of service. | |
| Title | Server DoS via JavaScript preprocessing or script items | |
| Weaknesses | CWE-248 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: Zabbix
Published:
Updated: 2026-08-18T13:34:38.081Z
Reserved: 2026-01-19T14:03:13.686Z
Link: CVE-2026-23938
No data.
Status : Received
Published: 2026-08-18T13:17:22.103
Modified: 2026-08-18T14:17:01.790
Link: CVE-2026-23938
No data.
OpenCVE Enrichment
Updated: 2026-08-18T14:15:07Z