First published: Fri Jan 28 2022(Updated: )
GLPI is a free asset and IT management software package. All GLPI versions prior to 9.5.7 are vulnerable to reflected cross-site scripting. Version 9.5.7 contains a patch for this issue. There are no known workarounds.
Credit: security-advisories@github.com
Affected Software | Affected Version | How to fix |
---|---|---|
GLPI | <9.5.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-21719 is a reflected cross-site scripting vulnerability in GLPI with a medium severity rating.
To fix CVE-2022-21719, upgrade GLPI to version 9.5.7 or later.
All GLPI versions prior to 9.5.7 are affected by CVE-2022-21719.
There are no known workarounds for CVE-2022-21719.
CVE-2022-21719 is classified as a reflected cross-site scripting vulnerability.