Vulnerabilities > Librenms > Librenms > 22.3.0

DATE CVE VULNERABILITY TITLE RISK
2022-06-02 CVE-2022-29711 Cross-site Scripting vulnerability in Librenms 22.3.0
LibreNMS v22.3.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the component /Table/GraylogController.php.
network
librenms CWE-79
4.3
2022-06-02 CVE-2022-29712 Command Injection vulnerability in Librenms 22.3.0
LibreNMS v22.3.0 was discovered to contain multiple command injection vulnerabilities via the service_ip, hostname, and service_param parameters.
network
low complexity
librenms CWE-77
7.5