CVE-2026-86733 | Grokability Snipe-IT up to 8.6.x Backup Restore /admin/backups/upload clean os command injection

SecurityVulns

A vulnerability identified as problematic has been detected in Grokability Snipe-IT up to 8.6.x. This affects an unknown function of the file /admin/backups/upload of the component Backup Restore. Performing a manipulation of the argument clean results in os command injection.

This vulnerability is identified as CVE-2026-86733. The attack can be initiated remotely. There is not any exploit available.

You should upgrade the affected component.VulDB Recent EntriesRead More