
`ZoneMinder` v1.36.34 has a command injection vulnerability (CVE-2025-65791) in `web/views/image.php`, allowing remote code execution. Patching is advised when available. #ZoneMinder #CommandInjection #InfoSec #CVE https://www.pulsepatch.io/posts/cve-2025-65791-zoneminder-command-injection
Post summary
ZoneMinder v1.36.34 has a command injection vulnerability (CVE‑2025‑65791) that permits remote code execution; patching is advised once an update is released.


