LibreNMS versions before 26.3.0 are affected by an authenticated Cross-site …
LibreNMS versions before 26.3.0 are affected by an authenticated Cross-site Scripting vulnerability on the showconfig page. Successful exploitation requires administrative privileges. Exploitation could result in XSS attacks being performed against other users with access to the page.
Affected products
- <26.3.0
Package maintainers
-
@yuyuyureka Yureka <yuka@yuka.dev>
-
@n0emis Ember Keske <nixpkgs@n0emis.network>
-
@johannwagner Johann Wagner <nix@wagner.digital>
-
@NetaliDev Jennifer Graul <me@netali.de>