CVE-2026-25590
EUVD-2026-933003.03.2026, 23:15
The GLPI Inventory Plugin handles network discovery, inventory, software deployment, and data collection for GLPI agents. Prior to 1.6.6, there is a reflected XSS vulnerability in task jobs. This vulnerability is fixed in 1.6.6.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| glpi-project | glpi_inventory | 𝑥 < 1.6.6 |
𝑥
= Vulnerable software versions