Security Advisory
CVE-2025-34283
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
Nagios XI versions prior to 2024R1.4.2 revealed API keys to users who were not authorized for API access when using Neptune themes. An authenticated user without API privileges could view another users or their own API key value.