Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
2888 articles · 109723 vulns · 38/41 feeds (7d)
← Back to list
EST
PRE-CVE

Multiple vulnerabilities in Snipe-IT allow bypassing security measures and potential Cross-Site Scripting

72% confidence

Description

An attacker can exploit multiple vulnerabilities in Snipe-IT to bypass security measures and potentially perform a Cross-Site Scripting (XSS) attack.

Affected Products

VendorProductVersions
—snipe-it—

Related News (1 articles)

Tier B
BSI Advisories1d ago
[NEU] [mittel] Snipe-IT: Mehrere Schwachstellen ermöglichen Umgehen von Sicherheitsvorkehrungen und potenziell Cross-Site Scripting
→ No new info (linked only)
CISA KEV❌ No
Actively exploited❌ No
CWECWE-79
PublishedApr 8, 2026
Last enriched1d ago
Tags
cross-site scriptingsecurity bypassweb application
Trending Score19
Source articles1
Independent1
Info Completeness5/14
Missing: cve_id, vendor, versions, cvss, epss, kev, exploit, patch, iocs

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Pin to Dashboard

Verification

State: reported
Confidence: 72%

Vulnerability Timeline

CVE Published
Apr 8, 2026
Discovered by ZDM
Apr 8, 2026