CVE-2025-27232

Publication date

2025-12-01 12:55:51

Family

Zabbix

State

PUBLISHED

Description

An authenticated Zabbix Super Admin can exploit the oauth.authorize action to read arbitrary files from the webserver leading to potential confidentiality loss.