CVE-2022-3561: Cross-site Scripting (XSS) - Generic in librenms/librenms
Published Nov 20, 2022
·Updated
Cross-site Scripting (XSS) - Generic in GitHub repository librenms/librenms prior to 22.10.0.
Affected Software
2 affected componentsFixes available
librenms librenms<22.10.0
composer/librenms/librenms<22.10.0
22.10.0
Remediation
Event History
Nov 20, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Advisory Published
via GitHub·06:30 AM
Data Sourced
via GitHub·06:30 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2022-3561?
CVE-2022-3561 is a Cross-site Scripting (XSS) vulnerability in the GitHub repository librenms/librenms prior to version 22.10.0.
2
How severe is CVE-2022-3561?
CVE-2022-3561 has a severity level of medium with a score of 6.1.
3
Which software versions are affected by CVE-2022-3561?
The Cross-site Scripting (XSS) vulnerability affects the librenms/librenms repository up to (excluding) version 22.10.0.
4
How can I fix CVE-2022-3561?
To fix CVE-2022-3561, you need to update your librenms/librenms software to version 22.10.0 or higher.
5
What is CWE-79?
CWE-79 refers to Improper Neutralization of Input During Web Page Generation (Cross-site Scripting).