Vulnerabilities > Librenms > Librenms > 1.27

DATE CVE VULNERABILITY TITLE RISK
2022-11-20 CVE-2022-4070 Insufficient Session Expiration vulnerability in Librenms
Insufficient Session Expiration in GitHub repository librenms/librenms prior to 22.10.0.
network
low complexity
librenms CWE-613
critical
9.8
2022-09-17 CVE-2022-3231 Unspecified vulnerability in Librenms
Cross-site Scripting (XSS) - Stored in GitHub repository librenms/librenms prior to 22.9.0.
network
low complexity
librenms
5.4
2022-02-27 CVE-2022-0772 Cross-site Scripting vulnerability in Librenms
Cross-site Scripting (XSS) - Stored in GitHub repository librenms/librenms prior to 22.2.2.
network
low complexity
librenms CWE-79
4.8
2022-02-15 CVE-2022-0589 Unspecified vulnerability in Librenms
Cross-site Scripting (XSS) - Stored in Packagist librenms/librenms prior to 22.1.0.
network
low complexity
librenms
5.4
2022-02-15 CVE-2022-0587 Unspecified vulnerability in Librenms
Improper Authorization in Packagist librenms/librenms prior to 22.2.0.
network
low complexity
librenms
6.5
2022-02-15 CVE-2022-0588 Unspecified vulnerability in Librenms
Missing Authorization in Packagist librenms/librenms prior to 22.2.0.
network
low complexity
librenms
6.5
2022-02-14 CVE-2022-0580 Unspecified vulnerability in Librenms
Incorrect Authorization in Packagist librenms/librenms prior to 22.2.0.
network
low complexity
librenms
8.8
2022-02-14 CVE-2022-0575 Unspecified vulnerability in Librenms
Cross-site Scripting (XSS) - Stored in Packagist librenms/librenms prior to 22.2.0.
network
low complexity
librenms
5.4
2022-02-14 CVE-2022-0576 Unspecified vulnerability in Librenms
Cross-site Scripting (XSS) - Generic in Packagist librenms/librenms prior to 22.1.0.
network
low complexity
librenms
6.1
2021-11-03 CVE-2021-43324 Cross-site Scripting vulnerability in Librenms
LibreNMS through 21.10.2 allows XSS via a widget title.
network
low complexity
librenms CWE-79
6.1