Vulnerability Details CVE-2023-29458
Duktape is an 3rd-party embeddable JavaScript engine, with a focus on portability and compact footprint. When adding too many values in valstack JavaScript will crash. This issue occurs due to bug in Duktape 2.6 which is an 3rd-party solution that we use.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 25.6%
CVSS Severity
CVSS v3 Score 5.9
Products affected by CVE-2023-29458
-
cpe:2.3:a:zabbix:zabbix:5.0.34
-
cpe:2.3:a:zabbix:zabbix:6.0.17
-
cpe:2.3:a:zabbix:zabbix:6.4.2