PatchSiren

uvdesk CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

CRITICAL uvdesk CVE published 2026-09-16

CVE-2026-92805

CVE-2026-92805 debrief based on the supplied source corpus. The vulnerability affects UVdesk Community Skeleton through 1.1.8, allowing unauthenticated attackers to gain full control of instances by exploiting authentication and validation issues on wizard endpoints. Defenders should assess exposure and prioritize remediation to prevent potential full control by unauthenticated attackers. This involves ve [truncated]