LibreNMS is a community-based GPL-licensed network monitoring system. The alert rule name in the Alerts > Alert Rules page is not properly sanitized, and can be used to inject HTML code. This vulnerability is fixed in 25.10.0.
| Software | From | Fixed in |
|---|---|---|
librenms / librenms
|
- | 25.10.0 |
librenms / librenms
|
25.8.0 | 25.10.0 |