CVE-2026-84192 UNKNOWN

CVE-2026-84192

Published: 2026-09-01

Description

LibreNMS before 26.3.1 contains a stored cross-site scripting vulnerability in legacy PHP templates that output SNMP-sourced and syslog-sourced data without escaping. An attacker who controls a monitored network device can inject arbitrary JavaScript through SNMP interface descriptions or syslog program fields that executes when authenticated users view affected pages.

AI Intelligence Brief

AI Intelligence

Analyzing vulnerability vectors…