Multiple security vulnerabilities have been discovered in Cacti, a web interface for graphing of monitoring systems, which could result in cross-site scripting, SQL injection, or command injection.
For the stable distribution (bookworm), these problems have been fixed in version 1.2.24+ds1-1+deb12u5.
We recommend that you upgrade your cacti packages.
Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: https://www.debian.org/security/