Vulnerability Description
Improper validation of user-supplied input in the ZIA Admin UI could allow an authenticated administrator to initiate backend functions through specific input fields in limited scenarios.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Zscaler | Zscaler Internet Access Admin Portal | < 6.2r |
Related Weaknesses (CWE)
References
- https://help.zscaler.com/zia/release-upgrade-summary-2025?applicable_category=zsRelease NotesVendor Advisory
FAQ
What is CVE-2026-22567?
CVE-2026-22567 is a vulnerability with a CVSS score of 7.6 (HIGH). Improper validation of user-supplied input in the ZIA Admin UI could allow an authenticated administrator to initiate backend functions through specific input fields in limited scenarios.
How severe is CVE-2026-22567?
CVE-2026-22567 has been rated HIGH with a CVSS base score of 7.6/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2026-22567?
Check the references section above for vendor advisories and patch information. Affected products include: Zscaler Zscaler Internet Access Admin Portal.