CVE-2026-103534 | David-Crty databasement up to 1.7.1 Snapshot Model /api/v1/snapshots SnapshotPolicy.viewAny/SnapshotPolicy.view access control (GHSA-vx6q-v2gv-5fhv)

SecurityVulns

A vulnerability has been found in David-Crty databasement up to 1.7.1 and classified as critical. Affected is the function SnapshotPolicy.viewAny/SnapshotPolicy.view of the file /api/v1/snapshots of the component Snapshot Model. This manipulation causes improper access controls.

This vulnerability is registered as CVE-2026-103534. Remote exploitation of the attack is possible. Furthermore, an exploit is available.

The affected component should be upgraded.VulDB Recent EntriesRead More