CVE-2026-52851

CVE-2026-52851 published: Traccar is an open source GPS tracking system. Prior to 6.14.0, an authenticated, non-readonly user with access to an object usable in a permission pair can submit DELETE /api/permissions with an extra attacker-controlled JSON key. Permission(LinkedHashMap<...

View full NVD advisory → ← Back to CVE watch