CVE-2026-30480
Medium severity, CVSS 6.5. EPSS: 0.4% chance of exploitation in the next 30 days.
A Local File Inclusion (LFI) vulnerability in the NFSen module (nfsen.inc.php) of LibreNMS 22.11.0-23-gd091788f2 allows authenticated attackers to include arbitrary PHP files from the server filesystem via path traversal sequences in the nfsen parameter.
Published 2026-04-14. Last modified 2026-06-17.