CVE-2026-61747 | InvenTree up to 1.3.x Import Session /api/importer/row/ privileges management

SecurityVulns

A vulnerability was found in InvenTree up to 1.3.x. It has been declared as problematic. This affects an unknown function of the file /api/importer/row/ of the component Import Session. Such manipulation leads to improper privilege management.

This vulnerability is listed as CVE-2026-61747. The attack may be performed from remote. There is no available exploit.

It is recommended to upgrade the affected component.VulDB Recent EntriesRead More