Medium severity6.5NVD Advisory· Published Dec 1, 2021· Updated Jun 17, 2026
CVE-2021-3992
CVE-2021-3992
Description
kimai2 is vulnerable to Improper Access Control
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
kevinpapst/kimai2Packagist | < 1.16.3 | 1.16.3 |
Affected products
2- kevinpapst/kevinpapst/kimai2v5Range: unspecified
Patches
Vulnerability mechanics
References
4- github.com/kevinpapst/kimai2/commit/ff9acab0fc81f0e9490462739ef15fe4ab028ea5nvdPatchThird Party AdvisoryWEB
- huntr.dev/bounties/a0c438fb-c8e1-40cf-acc6-c8a532b80b93nvdExploitPatchThird Party AdvisoryWEB
- github.com/advisories/GHSA-9w8f-7wgr-2h7gghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2021-3992ghsaADVISORY
News mentions
0No linked articles in our index yet.