Icinga 2 is an open source monitoring system. Prior to 2.14.9, 2.15.4, and 2.16.2, parsing deeply nested JSON can exhaust the call stack because nesting depth is not bounded. The affected JSON parsing paths are reachable by unauthenticated network clients thro
Shenlong is analyzing...
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-61550 | 9.8 CRITICAL | Icinga 2: Improper access control for JSON-RPC update certificate messages |
| CVE-2026-61552 | 7.2 HIGH | Icinga 2 DSL Injection via Unescaped Import Template Name |
No comments yet