Where
-Infinity
0

Icinga Icinga Web 2.14End of life details

First published (updated )

Icinga Icinga Web 2.13Out of support

Support Ends
Jul 3, 2026
First published (updated )

Icinga Icinga PowerShell FrameworkIcinga for Windows certificate can have too-open permissions

Risk 27
Severity
6.8
EPSS
0.00%
First published (updated )

Icinga IcingaIcinga has insecure permission of %ProgramData%\icinga2\var on Windows

Risk 27
Severity
6.8
EPSS
0.01%
First published (updated )

Icinga IcingaIcinga 2 signals sent as root to processes based on PID file written by the Icinga 2 daemon user

Risk 26
Severity
4.4
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Icinga IcingaIcinga 2 Denial of Service (DoS) By Dereferencing Invalid Reference

Risk 40
Severity
7.1
First published (updated )

Icinga Icinga 2Icinga 2 API users could access restricted values in filter expressions

Risk 40
Severity
7.1
First published (updated )

Icinga Icinga DB WebIcinga DB Web hidden/protected custom variables are prone to filter enumeration

Risk 38
Severity
6.5
First published (updated )

Icinga Icinga DB WebIcinga DB Web Exposure of Sensitive Information to an Unauthorized Actor vulnerability

Risk 14
Severity
2.4
First published (updated )

Icinga IcingaIcinga 2 certificate renewal might incorrectly renew an invalid certificate

Risk 61
Severity
9.8
EPSS
0.04%
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Icinga Icinga Web 2Icinga Web 2 has open redirect on login page

Risk 27
Severity
6.1
EPSS
0.03%
First published (updated )

Icinga Icinga Web 2Icinga Web 2 Vulnerable to Reflected XSS

Risk 25
Severity
1.1
EPSS
0.06%
First published (updated )

Icinga ReportingIcinga Reporting Stored XSS leads to SSRF

Risk 47
Severity
7.7
EPSS
0.04%
First published (updated )

Icinga Icinga Web 2Icinga Web 2 has XSS in embedded content

Risk 47
Severity
7.7
EPSS
0.05%
First published (updated )

Icinga Icinga Web 2Icinga Web 2 DOM-based XSS vulnerability

Risk 47
Severity
7.7
EPSS
0.05%
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Icinga Icinga DirectorIcinga has rest API endpoints accessible to restricted users

Risk 39
Severity
5.5
First published (updated )

Icinga IcingaIcinga 2 has a TLS Certificate Validation Bypass for JSON-RPC and HTTP API Connections

Risk 66
Severity
9.8
EPSS
16.18%
First published (updated )

Icinga icingaweb2-module-incubatoricingaweb2-module-incubator base implementation for HTML forms is susceptible to CSRF

Risk 56
Severity
8.8
EPSS
0.06%
First published (updated )

Icinga IcingaIcinga Director configuration is susceptible to Cross-Site Request Forgery

Risk 47
Severity
8.3
EPSS
0.06%
First published (updated )

Icinga Icinga Web 2.12Reached end of life

EOL
Jul 3, 2026
Support Ends
Mar 27, 2026
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Icinga Icinga Web 2.12Reached end of life

EOL
Jul 3, 2026
Support Ends
Mar 27, 2026
First published (updated )

Icinga Icinga Web Jira Integrationicingaweb2-module-jira template and field configuration are susceptible to CSRF

Risk 77
Severity
8.8
First published (updated )

Icinga Icinga Web 2.11Reached end of life

EOL
Mar 27, 2026
Support Ends
Sep 21, 2023
First published (updated )

Icinga Icinga Web 2.11Reached end of life

EOL
Mar 27, 2026
Support Ends
Sep 21, 2023
First published (updated )

Icinga Icinga Web 2.10Reached end of life

EOL
Sep 21, 2023
Support Ends
Jun 30, 2022
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Icinga Icinga Web 2.10Reached end of life

EOL
Sep 21, 2023
Support Ends
Jun 30, 2022
First published (updated )

Icinga Icinga Web 2Disclosure of hosts and related data, linked to decommissioned services in Icinga Web 2

Risk 27
Severity
5.3
First published (updated )

Icinga Icinga Web 2Arbitrary code execution for authenticated users in Icinga Web 2

Risk 93
Severity
8.8
First published (updated )

Icinga Icinga Web 2Path traversal in Icinga Web 2

Risk 43
Severity
7.5
First published (updated )

Icinga IcingaMissing TLS service certificate validation in GelfWriter, ElasticsearchWriter, InfluxdbWriter and Influxdb2Writer

Risk 43
Severity
7.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203