GHSA-7w8c-qgxg-m7jx: LibreNMS — Stored XSS via SNMP/Syslog Data in Legacy Templates
Multiple legacy PHP template files in LibreNMS directly output SNMP-sourced and syslog-sourced data into HTML without escaping. An attacker who controls a monitored network device (via compromised SNMP agent or syslog sender) can inject arbitrary JavaScript that executes when any authenticated LibreNMS user views the affected pages.
References
- github.com/advisories/GHSA-7w8c-qgxg-m7jx
- github.com/librenms/librenms/commit/6782af940c3c495755923b520a302f3a1cb1ce6b
- github.com/librenms/librenms/pull/19660
- github.com/librenms/librenms/releases/tag/26.5.0
- github.com/librenms/librenms/releases/tag/26.8.1
- github.com/librenms/librenms/security/advisories/GHSA-7w8c-qgxg-m7jx
Code Behaviors & Features
Detect and mitigate GHSA-7w8c-qgxg-m7jx with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →