Stats Digest Feeds
โ† Back to all CVEs

CVE-2026-39938

CRITICAL NVD
CVSS Score 9.8
Severity CRITICAL
Published Jun 24, 2026
Vendor unknown

Description

Cacti is an open source performance and fault management framework. Versions 1.2.30 and prior have unauthenticated LFI through graph_theme and rrdtool IPC serialization hardening. This issue has been resolved in version 1.2.31.

References