CVE-2024-54961: Nagios XI

Medium severity, CVSS 6.5. EPSS: 1.6% chance of exploitation in the next 30 days.

Nagios XI 2024R1.2.2 has an Information Disclosure vulnerability, which allows unauthenticated users to access multiple pages displaying the usernames and email addresses of all current users.

Affected products

  • Nagios Nagios XI: version 2024 only

Published 2025-02-20. Last modified 2026-06-17.