High severity7.1NVD Advisory· Published Jun 22, 2026· Updated Jul 7, 2026
CVE-2026-41048
CVE-2026-41048
Description
Incorrect caching of authentication between different polkit methods in qSnapper before version 1.3.3 allowed a local attacker to use functions like "restore from snapshot" even if only allowed to do "delete snapshot".
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2Patches
Vulnerability mechanics
References
3- bugzilla.suse.com/show_bug.cginvdIssue TrackingThird Party Advisory
- github.com/presire/qSnapper/releases/tag/v1.3.3nvdThird Party Advisory
- security.opensuse.org/2026/05/26/qsnapper-dbus-issues.htmlnvdVendor Advisory
News mentions
0No linked articles in our index yet.