Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

0Xtodor

#30979of 56,330
8.8Total CVSS
Vulnerabilities · 1
PT-2026-81906
8.8
2026-08-25
Kimai · Kimai · CVE-2026-80193
**Name of the Vulnerable Software and Affected Versions** Kimai versions prior to 2.62.0 **Description** An authorization bypass exists in the `QuickEntry` controller during the creation of new timesheets. Authenticated users who possess `view other timesheet` and `edit other timesheet` permissions can create timesheet records for other team members by submitting the QuickEntry form, as the system fails to validate the `create other timesheet` permission. **Recommendations** Update to version 2.62.0 or later.