Bugzilla – Bug 1213325
VUL-0: CVE-2023-29457: zabbix: reflected XSS attack
Last modified: 2023-07-14 09:53:14 UTC
CVE-2023-29457 Reflected XSS attacks, occur when a malicious script is reflected off a web application to the victim's browser. The script can be activated through Action form fields, which can be sent as request to a website with a vulnerability that enables execution of malicious scripts. References: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2023-29457 https://www.cve.org/CVERecord?id=CVE-2023-29457 https://support.zabbix.com/browse/ZBX-22988
Affects Version/s: 4.0.45 Non of SUSE/openSUSE code-streams are affected: SUSE:SLE-12-SP3:Update zabbix-4.0.12 openSUSE:Factory zabbix-6.0.17 Closing bug.