Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-3hgv-jr5j-cg9x | Snipe-IT: Chained Information Disclosure and IDOR Leads to Full EULA File Takeover |
Wed, 19 Aug 2026 19:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Grokability
Grokability snipe-it |
|
| Vendors & Products |
Grokability
Grokability snipe-it |
Wed, 19 Aug 2026 18:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Snipe-IT is an IT asset/license management system. Prior to 8.6.3, a restricted user can request /api/v1/users/{target_id}/eulas to obtain another user's randomized EULA filename and then download the signed file through /account/stored-eula-file/{filename}. The primary /stored-eula-file/{filename} route correctly denies access, but app/Http/Controllers/ProfileController.php and app/Http/Controllers/Api/UsersController.php do not consistently enforce ownership and target-user authorization. This issue is fixed in version 8.6.3. | |
| Title | Snipe-IT: Chained Information Disclosure and IDOR Leads to Full EULA File Takeover | |
| Weaknesses | CWE-639 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2026-08-19T19:23:52.515Z
Reserved: 2026-06-17T00:13:10.650Z
Link: CVE-2026-55694
No data.
Status : Received
Published: 2026-08-19T19:17:20.680
Modified: 2026-08-19T19:17:20.680
Link: CVE-2026-55694
No data.
OpenCVE Enrichment
Updated: 2026-08-19T19:30:04Z
Github GHSA