CVE-2016-15054: Nagios XI < 5.4.0 XSS via jQuery Migrate Library
Published Nov 3, 2025
·Updated
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority as it is a downstream effect of an already identified vulnerability, CVE-2012-6708.
Affected Software
2 affected components
Nagios XI<5.4.0
Nagios Nagios XI<5.4.0
Remediation
Information
Nagios addresses this vulnerability as "Fixed jQuery migrate XSS vulnerabilities."
Event History
Nov 3, 2025
CVE Published
via MITRE·09:56 PM
Rejected
via MITRE·09:56 PM
Data Sourced
via NVD·10:15 PM
Description
Nov 10, 2025
Rejected
via MITRE·05:57 PM
Frequently Asked Questions
1
What is the severity of CVE-2016-15054?
CVE-2016-15054 has a medium severity rating due to the potential for cross-site scripting (XSS) attacks.
2
How do I fix CVE-2016-15054?
To resolve CVE-2016-15054, upgrade Nagios XI to version 5.4.0 or later.
3
Which versions of Nagios XI are affected by CVE-2016-15054?
CVE-2016-15054 affects Nagios XI versions prior to 5.4.0.
4
What type of vulnerability is CVE-2016-15054?
CVE-2016-15054 is a cross-site scripting (XSS) vulnerability.
5
What impact does CVE-2016-15054 have on users?
CVE-2016-15054 may allow attackers to inject and execute arbitrary scripts in the context of a victim's browser.