CVE-2019-12530: GLPI Dashboard Project GLPI Dashboard

Critical severity, CVSS 9.8. EPSS: 1.5% chance of exploitation in the next 30 days.

Incorrect access control was discovered in the stdonato Dashboard plugin through 0.9.7 for GLPI, affecting df.php, issue.php, load.php, mem.php, traf.php, and uptime.php in front/sh.

Affected products

Published 2019-06-02. Last modified 2026-06-17.