Kimai Docker Flaw Lets Unauthenticated Attackers Forge Cookies and Take Over Accounts

Kimai users utilizing the official Docker image are strongly urged to update their installations following the disclosure of a critical vulnerability that could allow unauthenticated attackers to forge authentication cookies and potentially take over accounts, including super administrator accounts. This vulnerability, tracked as CVE-2026-52824, affects Kimai versions 2.57.0 and earlier. The issue has been resolved […]

The post Kimai Docker Flaw Lets Unauthenticated Attackers Forge Cookies and Take Over Accounts appeared first on Cyber Security News.

This article has been indexed from Cyber Security News

Read the original article: