High severity7.3NVD Advisory· Published Jun 22, 2026· Updated Jun 28, 2026
CVE-2026-41046
CVE-2026-41046
Description
A path traversal attack when using a "configName" parameter in qSnapper before version 1.3.3 allowed a local attacker to use malicious config files for snapper and so cause a denial of service or potentially escalate privileges to root.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2Patches
Vulnerability mechanics
References
3- bugzilla.suse.com/show_bug.cginvdThird Party Advisory
- security.opensuse.org/2026/05/26/qsnapper-dbus-issues.htmlnvdThird Party AdvisoryIssue Tracking
- github.com/presire/qSnapper/releases/tag/v1.3.3nvdRelease Notes
News mentions
0No linked articles in our index yet.