First published: Tue Feb 15 2022(Updated: )
Cross-site Scripting (XSS) - Stored in Packagist librenms/librenms prior to 22.1.0.
Credit: security@huntr.dev
Affected Software | Affected Version | How to fix |
---|---|---|
Librenms Librenms | <22.1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-0589 refers to a Cross-Site Scripting (XSS) vulnerability that is stored in Packagist librenms/librenms prior to version 22.1.0.
If you are using Packagist librenms/librenms version prior to 22.1.0, your application may be vulnerable to Cross-Site Scripting attacks.
CVE-2022-0589 has a severity rating of medium with a CVSS score of 5.4.
To fix CVE-2022-0589, you should update Packagist librenms/librenms to version 22.1.0 or higher.
You can find more information about CVE-2022-0589 at the following references: [Link 1](https://github.com/librenms/librenms/commit/4c9d4eefd8064a0285f9718ef38f5617d7f9d6fa), [Link 2](https://huntr.dev/bounties/d943d95c-076f-441a-ab21-cbf6b15f6768), [Link 3](https://notes.netbytesec.com/2022/02/multiple-vulnerabilities-in-librenms.html).