CVE-2025-53360: Pluginsglpi Databaseinventory
Medium severity, CVSS 4.3. EPSS: 0.3% chance of exploitation in the next 30 days.
pluginsGLPI's Database Inventory Plugin "manages" the Teclib' inventory agents in order to perform an inventory of the databases present on the workstation. In versions prior to 1.0.3, any authenticated user could send requests to agents. This issue has been patched in version 1.0.3.
Affected products
- Pluginsglpi Databaseinventory: before 1.0.3 (fixed in 1.0.3)
Published 2025-11-18. Last modified 2026-06-17.