CVE-2026-44833 – Snipe-IT: Open redirect vulnerability

CVE ID :CVE-2026-44833

Published : May 26, 2026, 8:16 p.m. | 15 minutes ago

Description :Snipe-IT is an IT asset/license management system. Prior to 8.4.1, an open redirect vulnerability in Snipe-IT allows attackers to redirect users to malicious sites via unvalidated HTTP Referer header stored in session variable. This vulnerability is fixed in 8.4.1.

Severity: 5.9 | MEDIUM

Visit the link for more details, such as CVSS details, affected products, timeline, and more… 

نوشته های مشابه