Medium severity5.4NVD Advisory· Published May 26, 2021· Updated Jul 9, 2026
CVE-2021-27676
CVE-2021-27676
Description
Centreon version 20.10.2 is affected by a cross-site scripting (XSS) vulnerability. The dep_description (Dependency Description) and dep_name (Dependency Name) parameters are vulnerable to stored XSS. A user has to log in and go to the Configuration > Notifications > Hosts page.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
centreon/centreonPackagist | < 20.10.7 | 20.10.7 |
Affected products
3- Centreon/Centreondescription
Patches
Vulnerability mechanics
References
5- github.com/centreon/centreon/pull/9587nvdPatchThird Party AdvisoryWEB
- github.com/advisories/GHSA-r5mf-q76q-f2xqghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2021-27676ghsaADVISORY
- centreon.comghsaWEB
- github.com/centreon/centreon/releases/tag/20.10.7ghsaWEB
News mentions
0No linked articles in our index yet.