Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2026-80193— Kimai before 2.62.0 Authorization Bypass via QuickEntry

Quick assessment

Affected
kimai kimai
Exploitation
Public or AI PoC available; prioritize validation
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

在 Kimai 版本低于 2.62.0 的情况下,QuickEntry 控制器在创建新的工时记录时未能正确验证“创建其他人员的工时表”(create_other_timesheet)权限。具备“查看其他人员工时表”(view_other_timesheet)和“编辑其他人员工时表”(edit_other_timesheet)权限的已认证用户,可以通过提交 QuickEntry 表单来创建属于团队其他成员的工时记录,从而绕过系统在其他地方实施的授权检查机制。

CVSS 8.8 · High

Possible ATT&CK Techniques 1 AI

T1078.004 · Cloud Accounts
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2026-80193

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
Kimai before 2.62.0 Authorization Bypass via QuickEntry
Source: CVE Program / CVE List V5
Vulnerability Description
Kimai before 2.62.0 fails to validate create_other_timesheet permission in the QuickEntry controller when creating new timesheets. Authenticated users with view_other_timesheet and edit_other_timesheet permissions can create timesheet records for team members by submitting the QuickEntry form, bypassing authorization checks enforced elsewhere.
Source: CVE Program / CVE List V5
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Source: CVE Program / CVE List V5
Vulnerability Type
授权机制缺失
Source: CVE Program / CVE List V5

Affected Products

Vendor Product Affected Versions CPE Subscribe
kimai kimai 0 ~ 2.62.0 -

II. Public POCs for CVE-2026-80193

# POC Description Source Link Shenlong Link
AI-Generated POC Premium
Qwen3.6-35B-A3B · 10018 chars
Pro+ exclusive includes:
Vulnerability reproduction recording (real sandbox build + trigger, exclusive)
In-depth vulnerability mechanism
Trigger conditions & impact
Full executable POC code
Exploit chain & mitigation
POC zip download
100+ AI POC generations per month

III. Intelligence Information for CVE-2026-80193

登录查看更多情报信息。

Vendor Advisories for CVE-2026-80193 (2)

Same Patch Batch · kimai · 2026-08-25 · 10 CVEs total

CVE-2026-80202 8.8 HIGH Kimai before 2.56.0 Authorization Bypass via TimesheetVoter
CVE-2026-80196 7.5 HIGH Kimai before 2.58.0 Authentication Bypass via Password Reset Link
CVE-2026-80198 7.5 HIGH Kimai before 2.56.0 Information Disclosure via config() Twig Function
CVE-2026-80195 5.4 MEDIUM Kimai before 2.63.0 Team Membership Removal via API
CVE-2026-80194 4.3 MEDIUM Kimai before 2.64.0 Missing Authorization via ProjectViewController export
CVE-2026-80197 4.3 MEDIUM Kimai before 2.57.0 Improper Authorization via Favorite Endpoints
CVE-2026-80199 3.7 LOW Kimai before 2.54.0 Username Enumeration via Timing Oracle
CVE-2026-80201 2.0 LOW Kimai before 2.53.0 API Token Leakage via Invoice Template
CVE-2026-80200 Kimai before 2.53.0 Open Redirect via RelayState

IV. Related Vulnerabilities

V. Comments for CVE-2026-80193

No comments yet


Leave a comment