After the initial setup process, some steps of setup.php file are reachable not only by super-administrators, but by unauthenticated users as well. Malicious actor can pass step checks and potentially change the configuration of Zabbix Frontend.
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-23134.json"