Medium severity4.8NVD Advisory· Published Sep 14, 2022· Updated Jun 17, 2026
CVE-2022-40626
CVE-2022-40626
Description
An unauthenticated user can create a link with reflected Javascript code inside the backurl parameter and send it to other authenticated users in order to create a fake account with predefined login, password and role in Zabbix Frontend.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
6- cpe:2.3:o:fedoraproject:fedora:37:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
2- support.zabbix.com/browse/ZBX-21350nvdIssue TrackingPatchVendor Advisory
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/SPU4RCRYVNVM3SS523UQXE63ATCTEX5G/nvd
News mentions
0No linked articles in our index yet.