CVE-2026-63493

CVE-2026-63493 published: Snipe-IT is an IT asset/license management system. Prior to 8.7.0, a password-authenticated session for an account with self.api permission can reach the personal-access-token API flow before completing the account's second-factor challenge because CheckFor...

View full NVD advisory → ← Back to CVE watch