← Back to browse · API

CVE-2024-32479

Severity
HIGH
CVSS
7.1
EPSS
0.34128
Risk score
40.34
CISA KEV
No
PoC
No
Published
2024-04-22
Modified
2024-08-02
First seen
2026-08-08
Aliases
EUVD-2024-1133, GHSA-72M9-7C8X-PMMW
Products
librenms:librenms, librenms:librenms < 24.4.0
Sources
euvd EUVD-2024-1133

Description

LibreNMS is an open-source, PHP/MySQL/SNMP-based network monitoring system. Prior to version 24.4.0, there is improper sanitization on the `Service` template name, which can lead to stored Cross-site Scripting. Version 24.4.0 fixes this vulnerability.

References