CVE-2026-25590 - GLPI Inventory Plugin has Reflected XSS in task jobs

CVE-2026-25590 - GLPI Inventory Plugin has Reflected XSS in task jobs

CVE ID : CVE-2026-25590 Published : March 3, 2026, 11:15 p.m. | 1 hour, 5 minutes ago Description : The GLPI Inventory Plugin handles network discovery, inventory, software deployment, and data collection for GLPI agents. Prior to 1.6.6, there is a reflected XSS vulnerability in task jobs. This vulnerability is fixed in 1.6.6. Severity: 4.5 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Severity
MEDIUM
Published
March 3, 2026
Attack Vector: network
Impact: XSS