PT-2026-85512 · Snipe-It · Snipe-It

·

CVE-2026-85616

·

Published

2026-09-04

·

Updated

2026-09-04

CVSS v3.1

8.5

High

VectorAV:N/AC:L/PR:L/UI:N/S:C/C:N/I:H/A:L
Name of the Vulnerable Software and Affected Versions Snipe-IT versions prior to 8.6.2
Description An authorization bypass occurs in checkout-acceptance report actions when Full Multiple Company Support is enabled. Authenticated users with reports.view permission can enumerate sequential acceptance IDs to soft-delete or trigger reminder emails for acceptances belonging to other companies. This is possible by exploiting a null check on the legacy users.company id column.
Recommendations Update to version 8.6.2 or later.

Exploit

Fix

IDOR

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-85616
GHSA-JQGW-VPJC-86FC

Affected Products

Snipe-It