In Thruk Monitoring through 2.46.3, the login field of the login form is vulnerable to reflected XSS. This vulnerability can be exploited by unauthenticated remote attackers to target users of the monitoring interface.
References
Configurations
No configuration.
History
No history.
Information
Published : 2026-05-08 05:16
Updated : 2026-06-17 04:31
NVD link : CVE-2022-23961
Mitre link : CVE-2022-23961
CVE.ORG link : CVE-2022-23961
JSON object : View
Products Affected
No product.
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
