Home/Product/checkmk
Product

checkmk

113 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2026-33457
all versions
Livestatus injection in the prediction graph page in Checkmk <2.5.0b4, <2.4.0p26, and <2.3.0p47 allows an authenticated user to in
6.3MEDIUM
CVE-2026-33456
all versions
Livestatus injection in the notification test mode in Checkmk <2.5.0b4 and <2.4.0p26 allows an authenticated user with access to t
7.6HIGH
CVE-2026-33455
all versions
Livestatus injection in the monitoring quicksearch in Checkmk <2.5.0b4 allows an authenticated attacker to inject livestatus comma
6.3MEDIUM
CVE-2026-3466
all versions
Insufficient sanitization of dashboard dashlet title links in Checkmk 2.2.0 (EOL), Checkmk 2.3.0 before 2.3.0p46, Checkmk 2.4.0 be
5.4MEDIUM
CVE-2025-39666
all versions
Local privilege escalation in Checkmk 2.2.0 (EOL), Checkmk 2.3.0 before 2.3.0p46, Checkmk 2.4.0 before 2.4.0p25, and Checkmk 2.5.0
7.3HIGH
CVE-2026-24096
all versions
Insufficient permission validation on multiple REST API Quick Setup endpoints in Checkmk 2.5.0 (beta) before version 2.5.0b2 and 2
8.8HIGH
CVE-2026-33276
all versions
Stored cross-site scripting (XSS) in Checkmk 2.5.0 (beta) before 2.5.0b2 allows authenticated users with permission to create host
5.4MEDIUM
CVE-2026-20915
all versions
Stored cross-site scripting (XSS) in Checkmk version 2.5.0 (beta) before 2.5.0b2 allows authenticated users with permission to cre
5.4MEDIUM
CVE-2025-64998
all versions
Exposure of session signing secret in Checkmk <2.4.0p23, <2.3.0p45 and 2.2.0 allows an administrator of a remote site with config
7.2HIGH
CVE-2026-2859
all versions
Improper permission enforcement in Checkmk versions 2.4.0 before 2.4.0p23, 2.3.0 before 2.3.0p43, and 2.2.0 (EOL) allows unauthent
4.3MEDIUM
CVE-2026-24097
all versions
Improper permission enforcement in Checkmk versions 2.4.0 before 2.4.0p23, 2.3.0 before 2.3.0p43, and 2.2.0 (EOL) allows authentic
4.3MEDIUM
CVE-2026-3103
all versions
A logic error in the remove_password() function in Checkmk GmbH's Checkmk versions <2.4.0p23, <2.3.0p43, and 2.2.0 (EOL) allows a
5.4MEDIUM
CVE-2025-64999
all versions
Improper neutralization of input in Checkmk versions 2.4.0 before 2.4.0p22, and 2.3.0 before 2.3.0p43 allows an attacker that can
5.4MEDIUM
CVE-2025-65000
all versions
SSH private keys of the "Remote alert handlers (Linux)" rule were exposed in the rule page's HTML source in Checkmk <= 2.4.0p18 an
5.3MEDIUM
CVE-2025-64997
all versions
Insufficient permission validation in Checkmk versions prior to 2.4.0p17 and 2.3.0p42 allow low-privileged users to view agent inf
6.5MEDIUM
CVE-2025-64996
< 2.3.0
In Checkmk versions prior to 2.4.0p16, 2.3.0p41, and all versions of 2.2.0 and older, the mk_inotify plugin creates world-readable
4.4MEDIUM
CVE-2025-58122
all versions
Insufficient permission validation in Checkmk 2.4.0 before version 2.4.0p16 allows low-privileged users to modify notification par
5.4MEDIUM
CVE-2025-58121
>= 2.2.0 and < 2.4.0
Insufficient permission validation on multiple REST API endpoints in Checkmk 2.2.0, 2.3.0, and 2.4.0 before version 2.4.0p16 allow
5.4MEDIUM
CVE-2025-39663
>= 2.0.0 and < 2.3.0
Cross-Site Scripting (XSS) vulnerability in Checkmk's distributed monitoring allows a compromised remote site to inject malicious
8.4HIGH
CVE-2025-39664
>= 2.1.0 and < 2.2.0
Insufficient escaping in the report scheduler within Checkmk <2.4.0p13, <2.3.0p38, <2.2.0p46 and 2.1.0 (EOL) allows authenticated
6.5MEDIUM
CVE-2025-32919
>= 2.1.0 and < 2.2.0
Use of an insecure temporary directory in the Windows License plugin for the Checkmk Windows Agent allows Privilege Escalation. Th
7.8HIGH
CVE-2025-32916
>= 2.1.0 and < 2.2.0
Potential use of sensitive information in GET requests in Checkmk GmbH's Checkmk versions <2.4.0p13, <2.3.0p38, <2.2.0p46, and 2.1
4.3MEDIUM
CVE-2025-32918
all versions
Improper neutralization of Livestatus command delimiters in autocomplete endpoint within the RestAPI of Checkmk versions <2.4.0p6,
8.8HIGH
CVE-2025-32915
all versions
Packages downloaded by Checkmk's automatic agent updates on Linux and Solaris have incorrect permissions in Checkmk < 2.4.0p1, < 2
5.5MEDIUM
CVE-2025-1712
< 2.2.0
Argument injection in special agent configuration in Checkmk <2.4.0p1, <2.3.0p32, <2.2.0p42 and 2.1.0 allows authenticated attacke
8.8HIGH
CVE-2025-32917
all versions
Privilege escalation in jar_signature agent plugin in Checkmk versions <2.4.0b7 (beta), <2.3.0p32, <2.2.0p42, and 2.1.0p49 (EOL) a
8.8HIGH
CVE-2025-3506
>= 2.1.0 and <= 2.3.0
Files to be deployed with agents are accessible without authentication in Checkmk 2.1.0, Checkmk 2.2.0, Checkmk 2.3.0 and <Checkmk
5.3MEDIUM
CVE-2025-2092
< 2.1.0
Insertion of Sensitive Information into Log File in Checkmk GmbH's Checkmk versions <2.3.0p29, <2.2.0p41 and <=2.1.0p49 (EOL) caus
7.5HIGH
CVE-2024-38865
< 2.1.0
Improper neutralization of livestatus command delimiters in a specific endpoint within RestAPI of Checkmk prior to 2.2.0p39, 2.3.0
8.8HIGH
CVE-2025-2596
< 2.1.0
Session logout could be overwritten in Checkmk GmbH's Checkmk versions <2.3.0p30, <2.2.0p41, and 2.1.0p49 (EOL)
5.3MEDIUM
CVE-2025-1075
< 2.1.0
Insertion of Sensitive Information into Log File in Checkmk GmbH's Checkmk versions <2.3.0p27, <2.2.0p40, and 2.1.0p51 (EOL) cause
7.5HIGH
CVE-2024-38864
< 2.1.0
Incorrect permissions on the Checkmk Windows Agent's data directory in Checkmk < 2.3.0p23, < 2.2.0p38 and <= 2.1.0p49 (EOL) allows
3.3LOW
CVE-2024-47094
all versions
Insertion of Sensitive Information into Log File in Checkmk GmbH's Checkmk versions <2.3.0p22, <2.2.0p37, <2.1.0p50 (EOL) causes r
5.5MEDIUM
CVE-2024-38863
all versions
Exposure of CSRF tokens in query parameters on specific requests in Checkmk GmbH's Checkmk versions <2.3.0p18, <2.2.0p35 and <2.1.
7.5HIGH
CVE-2024-38862
all versions
Insertion of Sensitive Information into Log File in Checkmk GmbH's Checkmk versions <2.3.0p18, <2.2.0p35, <2.1.0p48 and <=2.0.0p39
4.4MEDIUM
CVE-2024-6747
>= 2.0.0 and < 2.1.0
Information leakage in mknotifyd in Checkmk before 2.3.0p18, 2.2.0p36, 2.1.0p49 and in 2.0.0p39 (EOL) allows attacker to get poten
5.3MEDIUM
CVE-2024-8606
all versions
Bypass of two factor authentication in RestAPI in Checkmk < 2.3.0p16 and < 2.2.0p34 allows authenticated users to bypass two facto
8.8HIGH
CVE-2024-38860
all versions
Improper neutralization of input in Checkmk before versions 2.3.0p16 and 2.2.0p34 allows attackers to craft malicious links that c
6.1MEDIUM
CVE-2024-6572
all versions
Improper host key checking in active check 'Check SFTP Service' and special agent 'VNX quotas and filesystem' in Checkmk before Ch
7.4HIGH
CVE-2024-38858
< 2.3.0
Improper neutralization of input in Checkmk before version 2.3.0p14 allows attackers to inject and run malicious scripts in the Ro
6.1MEDIUM
CVE-2024-38859
all versions
XSS in the view page with the SLA column configured in Checkmk versions prior to 2.3.0p14, 2.2.0p33, 2.1.0p47 and 2.0.0 (EOL) allo
6.1MEDIUM
CVE-2024-28829
all versions
Least privilege violation and reliance on untrusted inputs in the mk_informix Checkmk agent plugin before Checkmk 2.3.0p12, 2.2.0p
7.8HIGH
CVE-2024-6542
all versions
Improper neutralization of livestatus command delimiters in mknotifyd in Checkmk <= 2.0.0p39, < 2.1.0p47, < 2.2.0p32 and < 2.3.0p1
6.5MEDIUM
CVE-2024-28828
all versions
Cross-Site request forgery in Checkmk < 2.3.0p8, < 2.2.0p29, < 2.1.0p45, and <= 2.0.0p39 (EOL) could lead to 1-click compromize of
8.8HIGH
CVE-2024-28827
<= 2.0.0
Incorrect permissions on the Checkmk Windows Agent's data directory in Checkmk < 2.3.0p8, < 2.2.0p29, < 2.1.0p45, and <= 2.0.0p39
8.8HIGH
CVE-2024-6163
<= 2.0.0
Certain http endpoints of Checkmk in Checkmk < 2.3.0p10 < 2.2.0p31, < 2.1.0p46, <= 2.0.0p39 allows remote attacker to bypass authe
5.3MEDIUM
CVE-2024-6052
<= 2.0.0
Stored XSS in Checkmk before versions 2.3.0p8, 2.2.0p29, 2.1.0p45, and 2.0.0 (EOL) allows users to execute arbitrary scripts by in
6.5MEDIUM
CVE-2024-38857
<= 2.0.0
Improper neutralization of input in Checkmk before versions 2.3.0p8, 2.2.0p28, 2.1.0p45, and 2.0.0 (EOL) allows attackers to craft
4.3MEDIUM
CVE-2024-28830
<= 2.0.0
Insertion of Sensitive Information into Log File in Checkmk GmbH's Checkmk versions <2.3.0p7, <2.2.0p28, <2.1.0p45 and <=2.0.0p39
2.7LOW
CVE-2024-28832
<= 2.0.0
Stored XSS in the Crash Report page in Checkmk before versions 2.3.0p7, 2.2.0p28, 2.1.0p45, and 2.0.0 (EOL) allows users with perm
4.8MEDIUM
CVE-2024-28831
<= 2.2.0
Stored XSS in some confirmation pop-ups in Checkmk before versions 2.3.0p7 and 2.2.0p28 allows Checkmk users to execute arbitrary
5.4MEDIUM
CVE-2024-5741
<= 2.0.0
Stored XSS in inventory tree rendering in Checkmk before 2.3.0p7, 2.2.0p28, 2.1.0p45 and 2.0.0 (EOL)
6.5MEDIUM
CVE-2024-28833
all versions
Improper restriction of excessive authentication attempts with two factor authentication methods in Checkmk 2.3 before 2.3.0p6 fac
5.9MEDIUM
CVE-2024-28826
<= 2.0.0
Improper restriction of local upload and download paths in check_sftp in Checkmk before 2.3.0p4, 2.2.0p27, 2.1.0p44, and in Checkm
8.8HIGH
CVE-2024-28825
<= 2.0.0
Improper restriction of excessive authentication attempts on some authentication methods in Checkmk before 2.3.0b5 (beta), 2.2.0p2
5.9MEDIUM
CVE-2024-3367
<= 2.0.0
Argument injection in websphere_mq agent plugin in Checkmk 2.0.0, 2.1.0, <2.2.0p26 and <2.3.0b5 allows local attacker to inject on
6.5MEDIUM
CVE-2024-2380
all versions
Stored XSS in graph rendering in Checkmk <2.3.0b4.
4.6MEDIUM
CVE-2024-28824
<= 2.0.0
Least privilege violation and reliance on untrusted inputs in the mk_informix Checkmk agent plugin before Checkmk 2.3.0b4 (beta),
8.8HIGH
CVE-2024-1742
<= 2.0.0
Invocation of the sqlplus command with sensitive information in the command line in the mk_oracle Checkmk agent plugin before Chec
3.8LOW
CVE-2024-0638
<= 2.0.0
Least privilege violation in the Checkmk agent plugins mk_oracle, mk_oracle.ps1, and mk_oracle_crs before Checkmk 2.3.0b4 (beta),
8.2HIGH
CVE-2024-0670
>= 2.0.0 and < 2.1.0
Privilege escalation in windows agent plugin in Checkmk before 2.2.0p23, 2.1.0p40 and 2.0.0 (EOL) allows local user to escalate pr
8.8HIGH
CVE-2023-6740
all versions
Privilege escalation in jar_signature agent plugin in Checkmk before 2.2.0p18, 2.1.0p38 and 2.0.0p39 allows local user to escalate
8.8HIGH
CVE-2023-6735
all versions
Privilege escalation in mk_tsm agent plugin in Checkmk before 2.2.0p18, 2.1.0p38 and 2.0.0p39 allows local user to escalate privil
8.8HIGH
CVE-2023-31211
all versions
Insufficient authentication flow in Checkmk before 2.2.0p18, 2.1.0p38 and 2.0.0p39 allows attacker to use locked credentials
8.8HIGH
CVE-2023-31210
all versions
Usage of user controlled LD_LIBRARY_PATH in agent in Checkmk 2.2.0p10 up to 2.2.0p16 allows malicious Checkmk site user to escalat
8.8HIGH
CVE-2023-6251
all versions
Cross-site Request Forgery (CSRF) in Checkmk < 2.2.0p15, < 2.1.0p37, <= 2.0.0p39 allow an authenticated attacker to delete user-me
3.5LOW
CVE-2023-6157
all versions
Improper neutralization of livestatus command delimiters in ajax_search in Checkmk <= 2.0.0p39, < 2.1.0p37, and < 2.2.0p15 allows
7.6HIGH
CVE-2023-6156
all versions
Improper neutralization of livestatus command delimiters in the availability timeline in Checkmk <= 2.0.0p39, < 2.1.0p37, and < 2.
7.6HIGH
CVE-2023-23549
all versions
Improper Input Validation in Checkmk <2.2.0p15, <2.1.0p37, <=2.0.0p39 allows priviledged attackers to cause partial denial of serv
2.7LOW
CVE-2023-31209
all versions
Improper neutralization of active check command arguments in Checkmk < 2.1.0p32, < 2.0.0p38, < 2.2.0p4 leads to arbitrary command
8.8HIGH
CVE-2023-23548
<= 1.6.0
Reflected XSS in business intelligence in Checkmk <2.2.0p8, <2.1.0p32, <2.0.0p38, <=1.6.0p30.
5.4MEDIUM
CVE-2023-22359
all versions
User enumeration in Checkmk <=2.2.0p4 allows an authenticated attacker to enumerate usernames.
4.3MEDIUM
CVE-2023-22348
all versions
Improper Authorization in RestAPI in Checkmk GmbH's Checkmk versions <2.1.0p28 and <2.2.0b8 allows remote authenticated users to r
4.3MEDIUM
CVE-2023-31208
all versions
Improper neutralization of livestatus command delimiters in the RestAPI in Checkmk < 2.0.0p36, < 2.1.0p28, and < 2.2.0b8 (beta) al
8.3HIGH
CVE-2023-31207
all versions
Transmission of credentials within query parameters in Checkmk <= 2.1.0p26, <= 2.0.0p35, and <= 2.2.0b6 (beta) may cause the autom
4.4MEDIUM
CVE-2022-46302
all versions
Broad access controls could allow site users to directly interact with the system Apache installation when providing the reverse p
8.8HIGH
CVE-2023-22294
< 1.6.4
Privilege escalation in Tribe29 Checkmk Appliance before 1.6.4 allows authenticated site users to escalate privileges via incorrec
8.8HIGH
CVE-2023-2020
all versions
Insufficient permission checks in the REST API in Tribe29 Checkmk <= 2.1.0p27 and <= 2.2.0b4 (beta) allow unauthorized users to sc
4.3MEDIUM
CVE-2023-1768
all versions
Inappropriate error handling in Tribe29 Checkmk <= 2.1.0p25, <= 2.0.0p34, <= 2.2.0b3 (beta), and all versions of Checkmk 1.6.0 cau
3.7LOW
CVE-2023-22288
all versions
HTML Email Injection in Tribe29 Checkmk <=2.1.0p23; <=2.0.0p34, and all versions of Checkmk 1.6.0 allows an authenticated attacker
4.1MEDIUM
CVE-2022-48321
all versions
Limited Server-Side Request Forgery (SSRF) in agent-receiver in Tribe29's Checkmk <= 2.1.0p11 allows an attacker to communicate wi
6.8MEDIUM
CVE-2022-48320
all versions
Cross-site Request Forgery (CSRF) in Tribe29's Checkmk <= 2.1.0p17, Checkmk <= 2.0.0p31, and all versions of Checkmk 1.6.0 (EOL) a
5.4MEDIUM
CVE-2022-48319
all versions
Sensitive host secret disclosed in cmk-update-agent.log file in Tribe29's Checkmk <= 2.1.0p13, Checkmk <= 2.0.0p29, and all versio
6.5MEDIUM
CVE-2022-48318
all versions
No authorisation controls in the RestAPI documentation for Tribe29's Checkmk <= 2.1.0p13 and Checkmk <= 2.0.0p29 which may lead to
5.3MEDIUM
CVE-2022-48317
all versions
Expired sessions were not securely terminated in the RestAPI for Tribe29's Checkmk <= 2.1.0p10 and Checkmk <= 2.0.0p28 allowing an
5.6MEDIUM
CVE-2022-47909
all versions
Livestatus Query Language (LQL) injection in the AuthUser HTTP query header of Tribe29's Checkmk <= 2.1.0p11, Checkmk <= 2.0.0p28
6.8MEDIUM
CVE-2022-46836
all versions
PHP code injection in watolib auth.php and hosttags.php in Tribe29's Checkmk <= 2.1.0p10, Checkmk <= 2.0.0p27, and Checkmk <= 1.6.
9.1CRITICAL
CVE-2022-46303
all versions
Command injection in SMS notifications in Tribe29 Checkmk <= 2.1.0p10, Checkmk <= 2.0.0p27, and Checkmk <= 1.6.0p29 allows an atta
8.0HIGH
CVE-2022-43440
< 1.6.0
Uncontrolled Search Path Element in Checkmk Agent in Tribe29 Checkmk before 2.1.0p1, before 2.0.0p25 and before 1.6.0p29 on a Chec
8.8HIGH
CVE-2023-0284
all versions
Improper Input Validation of LDAP user IDs in Tribe29 Checkmk allows attackers that can control LDAP user IDs to manipulate files
6.8MEDIUM
CVE-2022-4884
all versions
Path-Traversal in MKP storing in Tribe29 Checkmk <=2.0.0p32 and <= 2.1.0p18 allows an administrator to write mkp files to arbitrar
3.5LOW
CVE-2022-33912
all versions
A permission issue affects users that deployed the shipped version of the Checkmk Debian package. Packages created by the agent ba
7.8HIGH
CVE-2022-31258
< 1.6.0
In Checkmk before 1.6.0p29, 2.x before 2.0.0p25, and 2.1.x before 2.1.0b10, a site user can escalate to root by editing an OMD hoo
8.2HIGH
CVE-2021-40906
>= 1.5.0 and < 1.6.0
CheckMK Raw Edition software (versions 1.5.0 to 1.6.0) does not sanitise the input of a web service parameter that is in an unauth
6.1MEDIUM
CVE-2021-40905
all versions
The web management console of CheckMK Enterprise Edition (versions 1.5.0 to 2.0.0p9) does not properly sanitise the uploading of "
8.8HIGH
CVE-2021-40904
>= 1.5.0 and < 1.6.0
The web management console of CheckMK Raw Edition (versions 1.5.0 to 1.6.0) allows a misconfiguration of the web-app Dokuwiki (ins
8.8HIGH
CVE-2022-24566
all versions
In Checkmk <=2.0.0p19 fixed in 2.0.0p20 and Checkmk <=1.6.0p27 fixed in 1.6.0p28, the title of a Predefined condition is not prope
5.4MEDIUM
CVE-2022-24565
all versions
Checkmk <=2.0.0p19 Fixed in 2.0.0p20 and Checkmk <=1.6.0p27 Fixed in 1.6.0p28 are affected by a Cross Site Scripting (XSS) vulnera
5.4MEDIUM
CVE-2022-24564
all versions
Checkmk <=2.0.0p19 contains a Cross Site Scripting (XSS) vulnerability. While creating or editing a user attribute, the Help Text
6.1MEDIUM
CVE-2020-28919
all versions
A stored cross site scripting (XSS) vulnerability in Checkmk 1.6.0x prior to 1.6.0p19 allows an authenticated remote attacker to i
5.4MEDIUM
CVE-2021-36563
>= 1.5.0 and <= 2.0.0
The CheckMK management web console (versions 1.5.0 to 2.0.0) does not sanitise user input in various parameters of the WATO module
5.4MEDIUM
CVE-2020-24908
< 1.6.0
Checkmk before 1.6.0p17 allows local users to obtain SYSTEM privileges via a Trojan horse shell script in the %PROGRAMDATA%\checkm
7.8HIGH
CVE-2014-0243
<= 1.2.5
Check_MK through 1.2.5i2p1 allows local users to read arbitrary files via a symlink attack to a file in /var/lib/check_mk_agent/jo
5.5MEDIUM
CVE-2017-11507
all versions
A cross site scripting (XSS) vulnerability exists in Check_MK versions 1.2.8x prior to 1.2.8p25 and 1.4.0x prior to 1.4.0p9, allow
6.1MEDIUM
CVE-2017-14955
all versions
Check_MK before 1.2.8p26 mishandles certain errors within the failed-login save feature because of a race condition, which allows
5.9MEDIUM
CVE-2017-9781
all versions
A cross site scripting (XSS) vulnerability exists in Check_MK versions 1.4.0x prior to 1.4.0p6, allowing an unauthenticated remote
6.1MEDIUM
CVE-2014-2332
<= 1.2.2
Check_MK before 1.2.2p3 and 1.2.3x before 1.2.3i5 allows remote authenticated users to delete arbitrary files via a request to an
CVE-2014-2331
<= 1.2.2
Check_MK 1.2.2p2, 1.2.2p3, and 1.2.3i5 allows remote authenticated users to execute arbitrary Python code via a crafted rules.mk f
CVE-2014-2330
<= 1.2.2
Multiple cross-site request forgery (CSRF) vulnerabilities in the Multisite GUI in Check_MK before 1.2.5i2 allow remote attackers
CVE-2014-2329
<= 1.2.2
Multiple cross-site scripting (XSS) vulnerabilities in Check_MK before 1.2.2p3 and 1.2.3x before 1.2.3i5 allow remote authenticate
CVE-2014-5340
<= 1.2.4
The wato component in Check_MK before 1.2.4p4 and 1.2.5 before 1.2.5i4 uses the pickle Python module unsafely, which allows remote
CVE-2014-5339
<= 1.2.4
Check_MK before 1.2.4p4 and 1.2.5 before 1.2.5i4 allows remote authenticated users to write check_mk config files (.mk files) to a
CVE-2014-5338
all versions
Multiple cross-site scripting (XSS) vulnerabilities in the multisite component in Check_MK before 1.2.4p4 and 1.2.5 before 1.2.5i4
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin