CVE-2022-0588: Missing Authorization in librenms/librenms
Exposure of Sensitive Information to an Unauthorized Actor in Packagist librenms/librenms prior to 22.2.0.
Other sources
Missing Authorization in Packagist librenms/librenms prior to 22.2.0.
— MITRE
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2022-0588.
What is the severity of CVE-2022-0588?
The severity of CVE-2022-0588 is high.
What is the description of CVE-2022-0588?
CVE-2022-0588 is a vulnerability that allows exposure of sensitive information to an unauthorized actor in Packagist librenms/librenms prior to version 22.2.0.
How do I fix CVE-2022-0588?
To fix CVE-2022-0588, upgrade Packagist librenms/librenms to version 22.2.0 or higher.
Where can I find more information about CVE-2022-0588?
You can find more information about CVE-2022-0588 at the following references: [NVD](https://nvd.nist.gov/vuln/detail/CVE-2022-0588), [GitHub](https://github.com/librenms/librenms/commit/95970af78e4c899744a715766d744deef8c505f7), [Huntr.dev](https://huntr.dev/bounties/caab3310-0d70-4c8a-8768-956f8dd3326d).