CVE-2024-32479: Librenms
Medium severity, CVSS 5.4. EPSS: 34.1% chance of exploitation in the next 30 days.
LibreNMS is an open-source, PHP/MySQL/SNMP-based network monitoring system. Prior to version 24.4.0, there is improper sanitization on the `Service` template name, which can lead to stored Cross-site Scripting. Version 24.4.0 fixes this vulnerability.
Affected products
- Librenms Librenms: before 24.4.0 (fixed in 24.4.0)
Published 2024-04-22. Last modified 2026-06-17.