Zabbix
Security Risk Profile
Security Risk Score
Comprehensive risk assessment based on 131 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from December 21, 2006 to present
Threat Assessment
Severity Distribution
Exploit Likelihood
Age Distribution
Common Weaknesses (CWE)
Most Affected Products
Recent Vulnerabilities
See more →Improper validation of custom installation directories on Windows could allow installation into locations with unsafe permissions, increasing the risk of DLL sideloading.
Server DoS via JavaScript preprocessing or script items
Host PSK extraction in Zabbix API
Hardcoded session key in Zabbix 7.4
Stored XSS vulnerability in the Item history/Plain text widget
Agent 2 Docker plugin arbitrary file read via Docker API injection
Blind, read-only SQL injection in Zabbix API via sortfield parameter
Insufficient isolation of JavaScript (Duktape) execution context on Zabbix Server
Unauthorized host creation via configuration.import API by low-privilege user with write permissions
Frontend DoS vulnerability due to asymmetric resource consumption
Monitor Zabbix in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.