Skip to main content

Vendor/product archive

glpi-project / glpi_inventory CVEs

Beta · best-effort

4 CVEs tagged to glpi-project / glpi_inventory0 Critical, 1 High, 3 Medium, 0 Low, 0 Unrated.

CVE-2026-26001

Published Mar 18, 2026

The GLPI Inventory Plugin handles network discovery, inventory, software deployment, and data collection for GLPI agents. Prior to 1.6.6, non sanitized user input can lend to an S…

CVSS 7.1 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2026-25590

Published Mar 3, 2026

The GLPI Inventory Plugin handles network discovery, inventory, software deployment, and data collection for GLPI agents. Prior to 1.6.6, there is a reflected XSS vulnerability in…

CVSS 4.5 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2022-31082

Published Jun 27, 2022

GLPI is a Free Asset and IT Management Software package, Data center management, ITIL Service Desk, licenses tracking and software auditing. glpi-inventory-plugin is a plugin for…

CVSS 5.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-31062

Published Jun 20, 2022

### Impact A plugin public script can be used to read content of system files. ### Patches Upgrade to version 1.0.2. ### Workarounds `b/deploy/index.php` file can be deleted if de…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-4 of 4 CVEsPage 1 of 1