CVE-2026-84808 | Kimai up to 2.64.x REST API Timesheet Collection Endpoint authorization

SecurityVulns

A vulnerability identified as problematic has been detected in Kimai up to 2.64.x. Affected by this vulnerability is an unknown functionality of the component REST API Timesheet Collection Endpoint. The manipulation leads to authorization bypass.

This vulnerability is uniquely identified as CVE-2026-84808. The attack is possible to be carried out remotely. No exploit exists.

You should upgrade the affected component.VulDB Recent EntriesRead More