Dashboard Routing Vulnerability in Nezha Monitoring by NezhaHQ
CVE-2026-53520
6.5MEDIUM
What is CVE-2026-53520?
In Nezha Monitoring versions prior to 2.1.0, authenticated users can exploit a flaw to claim the dashboard Host through NAT configurations. This can lead to unauthorized preemption of all dashboard routing, compromising the integrity of the monitoring setup. Users are encouraged to upgrade to version 2.1.0 or later to mitigate this vulnerability.
Affected Version(s)
nezha >= 2.0.14, < 2.1.0
