CVE-2025-64998
Exposure of session signing secret in Checkmk <2.4.0p23, <2.3.0p45 and 2.2.0 allows an administrator of a remote site with config sync enabled to hijack sessions on the central site by forging session cookies.
Vendor
-
Product
-
CWE
Yayın Tarihi
2026-03-24 12:16:11
Güncelleme
2026-03-24 15:53:48
Source Identifier
security@checkmk.com
KEV Date Added
-