
CVE-2026-33276 Stored cross-site scripting (XSS) in Checkmk 2.5.0 (beta) before 2.5.0b2 allows authenticated users with permission to create hosts or services to execute arbitrary J… https://www.cve.org/CVERecord?id=CVE-2026-33276
Post summary
The post provides a brief CVE record excerpt, announcing a stored XSS vulnerability in Checkmk 2.5.0 beta, enabling authenticated users with host/service creation rights to run arbitrary JavaScript.
