Multiple Vulnerabilities Found in GLPI Software

Multiple security vulnerabilities have been identified in GLPI software. Affected versions include GLPI 11.0.x prior to 11.0.8 and all versions before 10.0.26. Risks include data integrity breaches, bypass of security policies, remote code injection via XSS, SQL injection (SQLi), and privilege escalation. The vulnerabilities are detailed in eight security bulletins published on July 27, 2026, with corresponding CVE identifiers. Users are advised to consult the provided security advisories for patches and updates. The advisories are available at specified GitHub links and CVE records. Immediate remediation is recommended for systems using affected GLPI versions.

Summary of content from

source

Made by AI. If you spot anything of concern write us at contact@cybach.com. We’ll promptly correct irregularities.


Posted