CVE-2026-41049: Presire Qsnapper

High severity, CVSS 7.1. EPSS: 0.2% chance of exploitation in the next 30 days.

Incorrect caching of authentication between different users of the  qSnapper dbus service before version 1.3.3 allowed any local attacker to use dbus functions after a privileged users has authenticated for them.

Affected products

  • Presire Qsnapper: before 1.3.3 (fixed in 1.3.3)

Published 2026-06-22. Last modified 2026-07-08.