Vulnerabilities
CVE-2026-28685 - Kimai: API invoice endpoint missing customer-level access control (IDOR)
2026-03-06
0 views
admin
CVE ID : CVE-2026-28685 Published : March 6, 2026, 5:16 a.m. | 35 minutes ago Description : Kimai is a web-based multi-user time-tracking application. Prior to version 2.51.0,
CVE Details
CVE ID
Published
March 6, 2026
🏷️ Tags
cvevulnerabilitysecuritycybersecuritycve-2026-28685
More from Vulnerabilities
CVE-2018-25179 - Gumbo CMS 0.99 SQL Injection via settings endpoint
2026-03-06
0
CVE-2018-25178 - Easyndexer 1.0 Arbitrary File Download via showtif.php
2026-03-06
0
CVE-2018-25180 - Maitra 1.7.2 SQL Injection and Database File Download
2026-03-06
0
CVE-2018-25181 - Musicco 2.0.0 Arbitrary Directory Download via Path Traversal
2026-03-06
0
Trending
1
CVE-2025-61481: Critical Remote Code Execution Vulnerability in MikroTik RouterOS & SwitchOS
2025-10-27 • 189 views
2
CVE-2025-43939: Dell Unity OS Command Injection (High)
2025-10-30 • 148 views
3
Google disputes false claims of massive Gmail data breach
2025-10-30 • 130 views
4
Microsoft: DNS outage impacts Azure and Microsoft 365 services
2025-10-30 • 88 views
5
3.5B Accounts, 1 Critical Flaw: Meta Closes WhatsApp Data-Harvesting
2025-11-25 • 81 views