Authentication Bypass in LibreNMS REST API by Numeric Type Confusion
CVE-2026-86426

9.2CRITICAL

Key Information:

Vendor

Librenms

Status
Vendor
CVE Published:
7 September 2026

What is CVE-2026-86426?

LibreNMS versions prior to 26.8.0 are susceptible to an authentication bypass vulnerability in the REST API. This issue arises when attackers exploit MySQL type coercion by submitting small integer values (0 through 9) instead of string tokens. By leveraging this weakness, unauthorized individuals can access restricted API endpoints, thereby gaining unauthorized access to critical functionalities such as device credentials and administrative features. This exposure can ultimately lead to remote code execution via manipulated alert templates.

Affected Version(s)

librenms 0 < 26.8.0

librenms 26.8.0

References

CVSS V4

Score:
9.2
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
Physical
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

rbs-astsec
.