CVE-2026-80214

Source
https://cve.org/CVERecord?id=CVE-2026-80214
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-80214.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-80214
Aliases
  • GHSA-7hmq-j399-mqwf
Published
2026-08-26T02:11:01.673Z
Modified
2026-08-28T11:30:34.015573230Z
Severity
  • 8.6 (High) CVSS_V4 - CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:L/SC:N/SI:N/SA:N CVSS Calculator
Summary
LibreNMS Virtualisation Discovery Module RCE
Details

LibreNMS’s Virtualization Discovery module is vulnerable to command line injection. An authenticated admin user can execute arbitrary code on the host server.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/80xxx/CVE-2026-80214.json",
    "cwe_ids": [
        "CWE-78"
    ],
    "cna_assigner": "PRJBLK"
}
References

Affected packages

Git / github.com/librenms/librenms

Affected ranges

Type
GIT
Repo
https://github.com/librenms/librenms
Events
Database specific
Show details
{
    "source": "AFFECTED_FIELD",
    "extracted_events": [
        {
            "introduced": "23.10.0"
        },
        {
            "fixed": "26.4.1"
        }
    ]
}

Affected versions

23.*
23.10.0
23.11.0
24.*
24.1.0
24.10.0
24.10.1
24.11.0
24.12.0
24.2.0
24.3.0
24.4.0
24.4.1
24.5.0
24.6.0
24.7.0
24.8.0
24.9.0
24.9.1
25.*
25.1.0
25.10.0
25.11.0
25.12.0
25.2.0
25.3.0
25.4.0
25.5.0
25.6.0
25.7.0
25.8.0
25.9.0
26.*
26.1.0
26.2.0
26.3.0
26.3.1
26.4.0

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-80214.json"