01/07/2026
🚨 Security Alert for GLPI Users — Urgent Plugin Update Required
GLPI Project has released an urgent security advisory regarding multiple vulnerabilities affecting several community plugins.
Affected plugins include:
🔴 GenericObject — CVSS 8.9 (Critical)
🟠 Datainjection — CVSS 7.1 (High)
🟡 PDF — CVSS 6.1 (Medium)
Organizations using GLPI On-Premise or Self-Hosted environments should immediately review installed plugins and update affected versions to reduce security risk.
Magnus Inno Tech recommends:
✅ Review installed plugins
✅ Verify current versions
✅ Backup before update
✅ Apply latest security patches
✅ Perform post-update validation
Good news for customers using GLPI Network Cloud Public / Private — patches have already been deployed by GLPI.
If your organization needs support for GLPI security review, upgrade planning, or plugin updates, Magnus Inno Tech is ready to assist.
Read more:
GLPI Security Advisory
https://www.glpi-project.org/en/security-advisory-glpi-plugins-update/
Several security vulnerabilities have been identified in GLPI community plugins. Find out which plugins are affected and how to update your instances.