0.0
CVE-2026-21745 -
Not used
0.0
CVE-2026-21750 -
Not used
0.0
CVE-2026-21747 -
Not used
0.0
CVE-2026-21748 -
Not used
0.0
CVE-2026-21749 -
Not used
0.0
CVE-2026-21746 -
Not used
0.0
CVE-2026-21744 -
Not used
6.8
CVE-2025-12511 - A user with elevated privileges can inject XSS in the DSM Administrationβs Extensions configuratioβ¦
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Centreon Infra Monitoring (DSM extenstio configuration modules) allows Stored XSS to user with elevated privileges. This issue affects Infra Monitoring: from 25.10.0 before 25.10.1, from β¦
6.5
CVE-2025-68280 - Apache SIS: XML External Entity (XXE) vulnerability
Improper Restriction of XML External Entity Reference vulnerability in Apache SIS. It is possible to write XML files in such a way that, when parsed by Apache SIS, an XML file reveals to the attacker the content of a local file on the server running Apache SIS. This vulnerability impacts the folβ¦
6.8
CVE-2025-12513 - A user with elevated privileges can inject XSS in the Hosts configuration parameters page
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Centreon Infra Monitoring (Hosts configuration form modules) allows Stored XSS to users with high privileges. This issue affects Infra Monitoring: from 25.10.0 before 25.10.2, from 24.10.0 β¦