Threat+Constellation
Live UTC
← Incidents
INCIDENT 259PhishingLOW / UNDER REVIEWSourced

Zoneminder

<p><a href="https://github.com/cisagov/CSAF/blob/develop/csaf_files/OT/white/2026/icsa-26-237-02.json"><strong>View CSAF</strong></a></p> <h2>Summary</h2> <p><strong>Successful exploitation of this vulnerability could result in full Remote Code Execution (RCE) as the web server user.</strong></p> <p>The following versions of Zoneminder are affected:</p> <ul> <li>Zoneminder 1.37.48|1.38.3&nbsp;</li> </ul> <div class="csaf-table"> <table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap> <thead> <tr> <th role="columnheader" data-tablesaw-priority="persist">CVSS</t…

Last evidence update
25 AUG 2026 · 12:00 UTC
Source count
1
Status
reported
United StatesManufacturingDefenseCVE-2026-76060
Observation history

How this record has evolved as evidence accumulated.

26 AUG · 05:17 UTC
Initial report
Evidence