
Kimai Docker Flaw Lets Unauthenticated Attackers Forge Cookies and Take Over Accounts
Kimai users utilizing the official Docker image are strongly urged to update their installations following the disclosure of a critical vulnerability that could allow unauthenticated attackers to forge authentication cookies and potentially take over accounts, including super administrator accounts. This vulnerability, tracked as CVE-2026-52824, affects Kimai versions 2.57.0 and earlier. The issue has been resolved […]
The post Kimai Docker Flaw Lets Unauthenticated Attackers Forge Cookies and Take Over Accounts appeared first on Cyber Security News.