CVE-2024-32479: Librenms

Medium severity, CVSS 5.4. EPSS: 34.1% chance of exploitation in the next 30 days.

LibreNMS is an open-source, PHP/MySQL/SNMP-based network monitoring system. Prior to version 24.4.0, there is improper sanitization on the `Service` template name, which can lead to stored Cross-site Scripting. Version 24.4.0 fixes this vulnerability.

Affected products

  • Librenms Librenms: before 24.4.0 (fixed in 24.4.0)

Published 2024-04-22. Last modified 2026-06-17.