Vulnerabilities
Report: CVE-2026-35479 - InvenTree Plugin Installation - Insufficient Permissions
2026-04-08
0 views
admin
CVE ID :CVE-2026-35479 Published : April 8, 2026, 8:16 p.m. | 18 minutes ago Description :InvenTree is an Open Source Inventory Management System. Prior to 1.2.7 and 1.3.0, any users who have staff access permissions can install plugins via the API, without requiring
CVE Details
CVE ID
Published
April 8, 2026
🏷️ Tags
report35479inventreeplugininstallationinsufficientpermissionspublishedcverce
More from Vulnerabilities
Report: CVE-2026-45615 - mouse07410/asn1c: 1-byte Heap Out-of-Bounds Read in `INTEGER_decode_oer` via Mal
2026-05-29
0
Report: Complete Guide to CVE-2026-45610 - WWBN AVideo plugin/LoginControl/set.json.php: 2FA toggle endpoint has no CSRF pr...
2026-05-29
0
Report: Complete Guide to CVE-2026-45582 - n8n-MCP: Workflow telemetry sanitizer could retain partial values from URL-shape...
2026-05-29
0
Report: CVE-2026-45580 - WWBN AVideo Live: stored XSS via unescaped stream key in modeYoutubeLive.php cla
2026-05-29
0
Trending
1
CVE-2025-61481: Critical Remote Code Execution Vulnerability in MikroTik RouterOS & SwitchOS
2025-10-27 • 189 views
2
CVE-2025-43939: Dell Unity OS Command Injection (High)
2025-10-30 • 148 views
3
Google disputes false claims of massive Gmail data breach
2025-10-30 • 130 views
4
Microsoft: DNS outage impacts Azure and Microsoft 365 services
2025-10-30 • 88 views
5
3.5B Accounts, 1 Critical Flaw: Meta Closes WhatsApp Data-Harvesting
2025-11-25 • 81 views