Stats Digest Feeds
โ† Back to all CVEs

CVE-2026-44833

MEDIUM snipeitapp snipe-it NVD
CVSS Score 5.9
Severity MEDIUM
Published May 26, 2026
Vendor snipeitapp

Description

Snipe-IT is an IT asset/license management system. Prior to 8.4.1, an open redirect vulnerability in Snipe-IT allows attackers to redirect users to malicious sites via unvalidated HTTP Referer header stored in session variable. This vulnerability is fixed in 8.4.1.

References