CVE-2025-29471: Nagios Log Server

High severity, CVSS 8.3. EPSS: 7.2% chance of exploitation in the next 30 days.

Cross Site Scripting vulnerability in Nagios Log Server v.2024R1.3.1 allows a remote attacker to execute arbitrary code via a payload into the Email field.

Affected products

  • Nagios Log Server: version 2024 only

Published 2025-04-15. Last modified 2026-06-17.