vulnerability

Alpine Linux: CVE-2025-49643: Asymmetric Resource Consumption (Amplification)

Severity
7
CVSS
(AV:N/AC:L/Au:S/C:N/I:N/A:C)
Published
Dec 1, 2025
Added
Dec 2, 2025
Modified
Feb 9, 2026

Description

An authenticated Zabbix user (including Guest) is able to cause disproportionate CPU load on the webserver by sending specially crafted parameters to /imgstore.php, leading to potential denial of service.

Solution

alpine-linux-upgrade-zabbix
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.