Publication date: June 30th, 2026
Component: centreon-web
List of vulnerabilities: 1
Description: Fixed multiple SQL injection vulnerabilities in legacy PHP code that could allow authenticated users to perform unauthorized database operations.
Reference: N/A
CVSS: 8.8
Severity: High
Status: Fixes have been provided for all supported versions and it is recommended to update Centreon Web on Central Server:
Component: centreon-it-edition-extensions
List of vulnerabilities: 1
Description: Fixed an information disclosure issue in the IT Edition Dashboard Playlist feature where internal error details could be exposed in API responses.
Reference: N/A
CVSS: 3.4
Severity: Low
Status: Fixes have been provided for all supported versions and it is recommended to update IT Edition Extensions on Central Server:
Stay ahead of potential threats by subscribing to the Security Bulletin section. You’ll receive instant notifications whenever a new bulletin is published, ensuring your infrastructure remains secure and up to date.
