snipe/snipe-it Security Advisories for v6.2.2 (3)
-
[HIGH] Snipe-IT remote code execution
PKSA-xdch-tcv5-mhm5 CVE-2024-48987 GHSA-57qh-vmjr-5jxg
Affected version: <7.0.10
Reported by:
GitHub -
[HIGH] Snipe-IT allows users to promote or demote themselves or other users
PKSA-z8qx-662q-rf8y CVE-2024-5685 GHSA-544r-fc65-v832
Affected version: <6.4.2
Reported by:
GitHub -
[HIGH] Cross-Site Request Forgery (CSRF) in snipe/snipe-it
PKSA-vwgv-c27j-814j CVE-2023-5511 GHSA-33vj-r6p6-x4p8
Affected version: <=6.2.2
Reported by:
GitHub