Multiple critical Cross-Site Scripting vulnerabilities in Checkmk (CVSS Base Score 9.0) can be exploited by a remote, authenticated attacker. Affected versions include Checkmk before 2.5.0p5, before 2.4.0p31, and before 2.3.0p48. A mitigation is available according to the advisory.
[WID-SEC-2026-1817] Checkmk: Mehrere Schwachstellen ermöglichen Cross-Site Scripting CVSS Base Score 9.0 (kritisch) CVSS Temporal Score 7.8 (hoch) Remoteangriff ja Datum 08.06.2026 Stand 09.06.2026 Mitigation ja Betroffene Systeme Betriebssystem Sonstiges UNIX Produktbeschreibung Checkmk ist eine IT-Monitoring-Software. Produkte 08.06.2026 Checkmk Checkmk <2.5.0p5 Checkmk Checkmk <2.4.0p31 Checkmk Checkmk <2.3.0p48 Angriff Angriff Ein entfernter, authentisierter Angreifer kann mehrere Schwachstellen in Checkmk ausnutzen, um einen Cross-Site Scripting Angriff durchzuführen. CVE Informationen Versionshistorie Feedback zum Advisory geben