GHSA-xc47-3rch-cv57
GitHub Security Advisory
Improper Access Control in snipe-it
✓ GitHub Reviewed
MODERATE
Has CVE
Advisory Details
Users with no system permissions are able to see and create personal access tokens
Affected Packages
Packagist
snipe/snipe-it
Affected versions:
0
(fixed in 5.3.8)
Related CVEs
Key Information
5.0
/10
Dataset
Last updated: September 15, 2025 6:32 AM
Data from GitHub Advisory Database. This information is provided for research and educational purposes.