Known Vulnerabilities for Snipe-it by Snipeitapp
Listed below are 10 of the newest known vulnerabilities associated with "Snipe-it" by "Snipeitapp".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-61807 json | Snipe-IT is an IT asset/license management system. Prior to 8.6.2, a stored manufacturer or supplier name passed as the table... | Not Provided | 2026-08-19 | 2026-08-19 |
| CVE-2026-55843 json | Snipe-IT is an IT asset/license management system. Prior to 8.6.0, UsersController::update() passes a missing permission requ... | Not Provided | 2026-07-10 | 2026-07-13 |
| CVE-2026-55703 json | Snipe-IT is an IT asset/license management system. Prior to 8.6.3, any activated account can request /maintenances/{id} and r... | Not Provided | 2026-08-19 | 2026-08-21 |
| CVE-2026-55694 json | Snipe-IT is an IT asset/license management system. Prior to 8.6.3, a restricted user can request /api/v1/users/{target_id}/eu... | Not Provided | 2026-08-19 | 2026-08-19 |
| CVE-2026-55643 json | Snipe-IT is an IT asset/license management system. Prior to 8.6.3, a company-scoped user in FMCS floater mode can access user... | Not Provided | 2026-08-19 | 2026-08-19 |
| CVE-2026-55542 json | Snipe-IT is an IT asset/license management system. Prior to version 8.6.1, Snipe-IT S3 signature image retrieval lacks author... | Not Provided | 2026-07-08 | 2026-07-09 |
| CVE-2026-55519 json | Snipe-IT is an IT asset/license management system. Prior to 8.4.1, an authenticated user with generic asset edit permission c... | Not Provided | 2026-08-19 | 2026-08-21 |
| CVE-2026-55516 json | Snipe-IT is an IT asset/license management system. Prior to 8.6.2, PATCH or PUT /api/v1/maintenances/{maintenance_id} checks ... | Not Provided | 2026-07-10 | 2026-07-14 |
| CVE-2026-55515 json | Snipe-IT is an IT asset/license management system. Prior to 8.6.2, the unaccepted-assets report delete endpoint authorizes on... | Not Provided | 2026-07-10 | 2026-07-13 |
| CVE-2026-55483 json | Snipe-IT is an IT asset/license management system. Prior to 8.6.0, an authenticated user with users.create permission can sub... | Not Provided | 2026-08-19 | 2026-08-19 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Snipeitapp | Snipe-it | 5.0.0 | |||
| Application | Snipeitapp | Snipe-it | 5.0.0 | |||
| Application | Snipeitapp | Snipe-it | 5.0.0 | |||
| Application | Snipeitapp | Snipe-it | 4.7.6 | |||
| Application | Snipeitapp | Snipe-it | 4.7.5 | |||
| Application | Snipeitapp | Snipe-it | 4.7.4 | |||
| Application | Snipeitapp | Snipe-it | 4.7.3 | |||
| Application | Snipeitapp | Snipe-it | 4.7.2 | |||
| Application | Snipeitapp | Snipe-it | 4.7.1 | |||
| Application | Snipeitapp | Snipe-it | 4.7.0 | |||
| Application | Snipeitapp | Snipe-it | 4.6.9 | |||
| Application | Snipeitapp | Snipe-it | 4.6.8 | |||
| Application | Snipeitapp | Snipe-it | 4.6.7 | |||
| Application | Snipeitapp | Snipe-it | 4.6.6 | |||
| Application | Snipeitapp | Snipe-it | 4.6.5 | |||
| Application | Snipeitapp | Snipe-it | 4.6.4 | |||
| Application | Snipeitapp | Snipe-it | 4.6.3 | |||
| Application | Snipeitapp | Snipe-it | 4.6.2 | |||
| Application | Snipeitapp | Snipe-it | 4.6.18 | |||
| Application | Snipeitapp | Snipe-it | 4.6.17 |