CVE-2026-41046
presire qSnapper, qsnapper
A path traversal attack when using a "configName" parameter in qSnapper before version 1.3.3 allowed a local attacker to use malicious config files for snapper and so cause a denial of service or potentially escalate privileges to root.
- CVSS
- 7.3
- EPSS
- 0.18% 8.31% percentile
- CISA KEV
- Not listed
- Published
- 2026.06.23