CVE-2026-26987 - LibreNMS affected by reflected XSS via email field

CVE-2026-26987 - LibreNMS affected by reflected XSS via email field

CVE ID : CVE-2026-26987 Published : Feb. 20, 2026, 2:16 a.m. | 26 minutes ago Description : LibreNMS is an auto-discovering PHP/MySQL/SNMP based network monitoring tool. Versions 25.12.0 and below are vulnerable to Reflected XSS attacks via email field. This issue has been fixed in version 26.2.0. Severity: 5.3 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Severity
MEDIUM
Published
Feb. 20, 2026
Affected Product: PHP
Attack Vector: network
Impact: XSS