Stored XSS Vulnerability in LibreNMS Network Monitoring Tool
CVE-2024-56144
What is CVE-2024-56144?
The LibreNMS network monitoring system is susceptible to a stored XSS vulnerability due to improper sanitization of user inputs within device edit parameters. Specifically, versions up to 24.11.0 allow remote attackers to inject malicious scripts that execute when a user views or interacts with the affected page. This exploitation can lead to unauthorized actions or exposure of sensitive data. The vulnerability has been addressed in version 24.12.0, and users are strongly encouraged to upgrade, as there are no available workarounds.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
librenms < 24.12.0
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved
