Vulnerability Description
LibreNMS’s Virtualization Discovery module is vulnerable to command line injection. An authenticated admin user can execute arbitrary code on the host server.
Related Weaknesses (CWE)
References
- https://github.com/librenms/librenms/security/advisories/GHSA-7hmq-j399-mqwf
- https://projectblack.io/blog/librenms-authenticated-rce-26-5-0/#rce-by-command-l
- https://github.com/librenms/librenms/security/advisories/GHSA-7hmq-j399-mqwf
FAQ
What is CVE-2026-80214?
CVE-2026-80214 is a documented vulnerability. LibreNMS’s Virtualization Discovery module is vulnerable to command line injection. An authenticated admin user can execute arbitrary code on the host server.
How severe is CVE-2026-80214?
CVSS scoring is not yet available for CVE-2026-80214. Check NVD for updates.
Is there a patch for CVE-2026-80214?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.