CVE-2026-41049EPSS p3.5%

CVE-2026-41049CVE-2026-41049

presire / qsnapper

Description

Incorrect caching of authentication between different users of the  qSnapper dbus service before version 1.3.3 allowed any local attacker to use dbus functions after a privileged users has authenticated for them.

Scoring

CVSS 7.1 ()
VectorCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H
EPSS0.14% probability of exploitation · percentile 3.5% · 2026-08-11T12:00:17Z
Last modified2026-07-08
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.