Known Vulnerabilities for products from Check Mk Project

Listed below are 10 of the newest known vulnerabilities associated with the vendor "Check Mk Project".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2026-47125 json Not Provided 2026-05-29 2026-05-29
CVE-2026-46526 json Not Provided 2026-05-28 2026-05-29
CVE-2026-44678 json Not Provided 2026-05-14 2026-05-14
CVE-2026-43965 json Not Provided 2026-06-02 2026-06-02
CVE-2026-43877 json Not Provided 2026-05-11 2026-05-12
CVE-2026-43000 json Not Provided 2026-05-28 2026-05-28
CVE-2026-42812 json Not Provided 2026-05-04 2026-05-04
CVE-2026-42092 json Not Provided 2026-05-04 2026-05-06
CVE-2026-40923 json Not Provided 2026-04-21 2026-05-22
CVE-2026-35595 json Not Provided 2026-04-10 2026-04-10
CVE-2017-11507 json A cross site scripting (XSS) vulnerability exists in Check_MK versions 1.2.8x prior to 1.2.8p25 and 1.4.0x prior to 1.4.0p9, ... Not Provided 2017-12-11 2025-04-20
CVE-2017-9781 json A cross site scripting (XSS) vulnerability exists in Check_MK versions 1.4.0x prior to 1.4.0p6, allowing an unauthenticated r... 6.1 - MEDIUM 2017-06-21 2023-11-07
CVE-2014-5340 json The wato component in Check_MK before 1.2.4p4 and 1.2.5 before 1.2.5i4 uses the pickle Python module unsafely, which allows r... Not Provided 2014-09-02 2026-05-06
CVE-2014-5339 json Check_MK before 1.2.4p4 and 1.2.5 before 1.2.5i4 allows remote authenticated users to write check_mk config files (.mk files)... Not Provided 2014-09-02 2026-05-06
CVE-2014-5338 json Multiple cross-site scripting (XSS) vulnerabilities in the multisite component in Check_MK before 1.2.4p4 and 1.2.5 before 1.... Not Provided 2014-08-22 2026-05-06
CVE-2014-2332 json Check_MK before 1.2.2p3 and 1.2.3x before 1.2.3i5 allows remote authenticated users to delete arbitrary files via a request t... Not Provided 2015-08-31 2026-05-06
CVE-2014-2331 json Check_MK 1.2.2p2, 1.2.2p3, and 1.2.3i5 allows remote authenticated users to execute arbitrary Python code via a crafted rules... Not Provided 2015-08-31 2026-05-06
CVE-2014-2330 json Multiple cross-site request forgery (CSRF) vulnerabilities in the Multisite GUI in Check_MK before 1.2.5i2 allow remote attac... Not Provided 2015-08-31 2026-05-06
CVE-2014-2329 json Multiple cross-site scripting (XSS) vulnerabilities in Check_MK before 1.2.2p3 and 1.2.3x before 1.2.3i5 allow remote authent... Not Provided 2015-08-31 2026-05-06
CVE-2014-0243 json Check_MK through 1.2.5i2p1 allows local users to read arbitrary files via a symlink attack to a file in /var/lib/check_mk_age... 5.5 - MEDIUM 2018-07-19 2023-11-07

Known software with vulnerabilities from Check Mk Project

Type Vendor Product Version
ApplicationCheck Mk ProjectCheck Mk1.1.0