Package glpi: Information

    Source package: glpi
    Version: 10.0.23-alt0.p10.1
    Build time:  Feb 9, 2026, 10:44 AM in the task #407328
    Category: Networking/Other
    Report package bug
    License: GPLv3
    Summary: IT and asset management software
    Description: 
    GLPI is the Information Resource-Manager with an additional Administration-
    Interface.
    You can use it to build up a database with an inventory for your company
    (computer, software, printers...).
    It has enhanced functions to make the daily life for the administrators easier,
    like a job-tracking-system with mail-notification and methods to build a
    database with basic information about your network-topology.

    List of RPM packages built from this SRPM:
    glpi (noarch)
    glpi-apache2 (noarch)
    glpi-php8.1 (noarch)
    glpi-php8.2 (noarch)

    Maintainer: Pavel Zilke

    List of contributors:
    Pavel Zilke

      1. rpm-macros-webserver-common

    Last changed


    Feb. 6, 2026 Pavel Zilke 10.0.23-alt0.p10.1
    - New version 10.0.23
    - This release fixes a security issue that has been recently discovered. Update is recommended!
     + CVE-2026-22044 : Authenticated SQL Injection
     + CVE-2026-23624 : Session stealing on externally authenticated user change
    Oct. 30, 2025 Pavel Zilke 10.0.20-alt0.p10.1
    - New version 10.0.20
    July 16, 2025 Pavel Zilke 10.0.19-alt0.p10.1
    - New version 10.0.19
    - This release fixes a security issue that has been recently discovered. Update is recommended!
    - Security fixes:
     + CVE-2025-27514 : Stored XSS on projects kanban
     + CVE-2025-52567 : Blind SSRF in RSS feeds and planning
     + CVE-2025-52897 : XSS and open redirection in planning
     + CVE-2025-53008 : Mail receiver credentials exfiltration
     + CVE-2025-53357 : Reservations modification by unauthorized user
     + CVE-2025-53113 : Access to unallowed items information through external links
     + CVE-2025-53111 : Data exposure to non allowed users
     + CVE-2025-53112 : Data removal from allowed users
     + CVE-2025-53105 : Unauthorized rules execution order update