First published: Tue Aug 30 2022(Updated: )
LibreNMS v22.6.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the component oxidized-cfg-check.inc.php.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Librenms Librenms | =22.6.0 | |
composer/librenms/librenms | <22.7.0 | 22.7.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-36746 is a cross-site scripting (XSS) vulnerability discovered in LibreNMS v22.6.0 via the component oxidized-cfg-check.inc.php.
CVE-2022-36746 has a severity rating of 6.1, which is considered medium.
LibreNMS v22.6.0 is the only affected version of the software.
To fix the CVE-2022-36746 vulnerability, it is recommended to update to a patched version of LibreNMS.
Yes, you can find more information about CVE-2022-36746 at the following reference: [GitHub Pull Request #14126](https://github.com/librenms/librenms/pull/14126).