CVE-2026-61525

CVE-2026-61525 published: Zammad is a web based open source helpdesk/customer support system. In 7.0.2 and 7.1.0, zammad's session management for websocket and long-polling connections is susceptible to a path traversal attack. Session identifiers supplied by the client are insuffic...

View full NVD advisory → ← Back to CVE watch