Vulnerabilities
Report: CVE-2026-35479 - InvenTree Plugin Installation - Insufficient Permissions
2026-04-08
0 views
admin
CVE ID :CVE-2026-35479 Published : April 8, 2026, 8:16 p.m. | 18 minutes ago Description :InvenTree is an Open Source Inventory Management System. Prior to 1.2.7 and 1.3.0, any users who have staff access permissions can install plugins via the API, without requiring
CVE Details
CVE ID
Published
April 8, 2026
🏷️ Tags
report35479inventreeplugininstallationinsufficientpermissionspublishedcverce
More from Vulnerabilities
Report: CVE-2026-39844 - NiceGUI has a Path Traversal in NiceGUI Upload Filename on Windows via Backslash
2026-04-08
0
Report: CVE-2026-5803 - bigsk1 openai-realtime-ui API Proxy Endpoint server.js server-side request forgery - 2025 Update
2026-04-08
0
Report: CVE-2026-39429 - kcp's cache server is accessible without authentication or authorization checks
2026-04-08
0
Report: CVE-2026-23869 - React Server Components Denial of Service Vulnerability
2026-04-08
0
Trending
1
CVE-2025-61481: Critical Remote Code Execution Vulnerability in MikroTik RouterOS & SwitchOS
2025-10-27 • 189 views
2
CVE-2025-43939: Dell Unity OS Command Injection (High)
2025-10-30 • 148 views
3
Google disputes false claims of massive Gmail data breach
2025-10-30 • 130 views
4
Microsoft: DNS outage impacts Azure and Microsoft 365 services
2025-10-30 • 88 views
5
3.5B Accounts, 1 Critical Flaw: Meta Closes WhatsApp Data-Harvesting
2025-11-25 • 81 views