Security Advisory

CVE-2026-2728

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2026-04-13 10:39:54
Last updated 2026-04-13 12:59:06
Assigner PRJBLK
State PUBLISHED

Description

LibreNMS versions before 26.3.0 are affected by an authenticated Cross-site Scripting vulnerability on the showconfig page. Successful exploitation requires administrative privileges. Exploitation could result in XSS attacks being performed against other users with access to the page.