CVE-2026-86733 | Grokability Snipe-IT up to 8.6.x Backup Restore /admin/backups/upload clean os command injection
A vulnerability identified as problematic has been detected in Grokability Snipe-IT up to 8.6.x. This affects an unknown function of the file /admin/backups/upload of the component Backup Restore. Performing a manipulation of the argument clean results in os command injection.
This vulnerability is identified as CVE-2026-86733. The attack can be initiated remotely. There is not any exploit available.
You should upgrade the affected component.VulDB Recent EntriesRead More