CVE-2026-84194 | LibreNMS up to 26.3.x Discovery Worker VminfoLibvirt.php exec Hostname os command injection
A vulnerability, which was classified as problematic, was found in LibreNMS up to 26.3.x. Affected by this issue is the function exec of the file VminfoLibvirt.php of the component Discovery Worker. Such manipulation of the argument Hostname leads to os command injection.
This vulnerability is traded as CVE-2026-84194. The attack may be launched remotely. There is no exploit available.
You should upgrade the affected component.VulDB Recent EntriesRead More