CVE-2026-86773 | Grokability Snipe-IT up to 8.6.3 Predefined Kit Authorization privileges management
A vulnerability, which was classified as critical, was found in Grokability Snipe-IT up to 8.6.3. The impacted element is the function updateLicense/updateConsumable/updateAccessory/updateModel/storeModel of the component Predefined Kit Authorization. The manipulation results in improper privilege management.
This vulnerability is known as CVE-2026-86773. It is possible to launch the attack remotely. No exploit is available.
You should upgrade the affected component.VulDB Recent EntriesRead More