Vulnerabilities > Librenms > Low

DATE CVE VULNERABILITY TITLE RISK
2022-02-27 CVE-2022-0772 Cross-site Scripting vulnerability in Librenms
Cross-site Scripting (XSS) - Stored in GitHub repository librenms/librenms prior to 22.2.2.
network
librenms CWE-79
3.5
2022-02-15 CVE-2022-0589 Cross-site Scripting vulnerability in Librenms
Cross-site Scripting (XSS) - Stored in Packagist librenms/librenms prior to 22.1.0.
network
librenms CWE-79
3.5
2022-02-14 CVE-2022-0575 Cross-site Scripting vulnerability in Librenms
Cross-site Scripting (XSS) - Stored in Packagist librenms/librenms prior to 22.2.0.
network
librenms CWE-79
3.5
2021-09-08 CVE-2021-31274 Cross-site Scripting vulnerability in Librenms
In LibreNMS < 21.3.0, a stored XSS vulnerability was identified in the API Access page due to insufficient sanitization of the $api->description variable.
network
librenms CWE-79
3.5
2019-08-28 CVE-2019-15230 Cross-site Scripting vulnerability in Librenms 1.54
LibreNMS v1.54 has XSS in the Create User, Inventory, Add Device, Notifications, Alert Rule, Create Maintenance, and Alert Template sections of the admin console.
network
librenms CWE-79
3.5