Known Vulnerabilities for Snipe-it by Grokability
Listed below are 8 of the newest known vulnerabilities associated with "Snipe-it" by "Grokability".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-44833 json | Snipe-IT is an IT asset/license management system. Prior to 8.4.1, an open redirect vulnerability in Snipe-IT allows attacker... | Not Provided | 2026-05-26 | 2026-05-26 |
| CVE-2026-44832 json | Snipe-IT is an IT asset/license management system. Prior to 8.4.1, aAn authenticated user with only users.edit permission can... | Not Provided | 2026-05-26 | 2026-05-26 |
| CVE-2026-44831 json | Snipe-IT is an IT asset/license management system. Prior to 8.4.1, users with component view access could be impacted by an u... | Not Provided | 2026-05-26 | 2026-05-26 |
| CVE-2026-38533 json | An improper authorization vulnerability in the /api/v1/users/{id} endpoint of Snipe-IT v8.4.0 allows authenticated attackers ... | Not Provided | 2026-04-14 | 2026-04-16 |
| CVE-2026-37709 json | Insecure Permissions vulnerability in grokability snipe-it v.8.4.0 and before and fixed after 2026-03-10 commit 676a9958 allo... | Not Provided | 2026-05-07 | 2026-05-07 |
| CVE-2025-63743 json | Cross-Site Scripting vulnerability in the Snipe-IT web-based asset management system v8.3.0 to up and including v8.3.1 allows... | Not Provided | 2026-04-13 | 2026-04-14 |
| CVE-2025-23776 json | Missing Authorization vulnerability in ekaterir Cache Sniper for Nginx snipe-nginx-cache allows Exploiting Incorrectly Config... | Not Provided | 2025-01-16 | 2026-04-23 |
| CVE-2025-15602 json | Snipe-IT versions prior to 8.3.7 contain sensitive user attributes related to account privileges that are insufficiently prot... | Not Provided | 2026-03-06 | 2026-03-09 |