Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Yavolo

#19523of 53,630
13.5Total CVSS
Vulnerabilities · 2
Medium
1
High
1
PT-2026-45959
8.4
2026-06-03
Glpi · Glpi · CVE-2026-42321
**Name of the Vulnerable Software and Affected Versions** GLPI versions 10.0.4 through 10.0.24 **Description** A technician can store a Cross-Site Scripting (XSS) payload in the asset locked tab. XSS is a type of security flaw that allows an attacker to inject malicious scripts into web pages viewed by other users. **Recommendations** Update to version 10.0.25 or 11.0.7.
PT-2026-41759
5.1
2026-05-18
Glpi · Glpi · CVE-2026-32312
**Name of the Vulnerable Software and Affected Versions** GLPI versions 11.0.0 through 11.0.6 **Description** An authenticated user with forms READ permission can export the structure of unauthorized forms. **Recommendations** Update to version 11.0.7.