The Zabbix API host.get action can be exploited by authenticated users to extract a host's PSK key leading to potential loss of data integrity.
An authenticated user with access to host.get API action sending crafted HTTP requests to Zabbix API. An attacker would also need access to Zabbix trapper port.
Update the affected components to their respective fixed versions.