Description
An unauthenticated user is able to cause disproportionate CPU load on the Frontend webserver by sending specifically crafted requests to the Frontend popup.testtriggerexpr action, leading to potential denial of service.
No analysis available yet.
Remediation
Vendor Solution
Update the affected components to their respective fixed versions.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
| Link | Providers |
|---|---|
| https://support.zabbix.com/browse/ZBX-28069 |
|
History
Tue, 18 Aug 2026 12:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An unauthenticated user is able to cause disproportionate CPU load on the Frontend webserver by sending specifically crafted requests to the Frontend popup.testtriggerexpr action, leading to potential denial of service. | |
| Title | Frontend DoS via the popup.testtriggerexpr action | |
| Weaknesses | CWE-405 | |
| References |
| |
| Metrics |
cvssV4_0
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: Zabbix
Published:
Updated: 2026-08-18T13:35:30.857Z
Reserved: 2026-01-19T14:03:13.686Z
Link: CVE-2026-23930
No data.
Status : Received
Published: 2026-08-18T13:17:21.303
Modified: 2026-08-18T13:17:21.303
Link: CVE-2026-23930
No data.
OpenCVE Enrichment
No data.
Weaknesses
-
CWE-405
Asymmetric Resource Consumption (Amplification)