The JavaScript preprocessing (Duktape) engine on Zabbix server has a vulnerability where a limited administrator is able to read raw heap data potentially resulting in leaked data from other running preprocessors not available to said administrator.
An attacker with limited administrator access to the Zabbix Frontend defining malicious preprocessing rules.
Update the affected components to their respective fixed versions.