{"id":"CVE-2026-53625","title":"GLPI is a free asset and IT management software package","summary":"GLPI is a free asset and IT management software package. From 0.70 until 10.0.26 and 11.0.8, a technician can manipulate the authtype value through the API to change another user's authentication method. Under configurations using the le…","severity":"high","cvss":7.5,"cvssVector":"CVSS:4.0/AV:N/AC:L/AT:P/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N","cwe":["CWE-862"],"vendor":"glpi-project","product":"glpi","affected":["glpi >= 0.70, < 10.0.26","glpi >= 11.0.0, < 11.0.8"],"published":"2026-09-25","updated":"2026-09-25","sourceUpdated":"2026-09-25T19:17:27.617","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-53625","references":[{"url":"https://github.com/glpi-project/glpi/commit/9329f1ecac8099b54c2ca4dd770d78f82e1e6db8","label":"security-advisories@github.com"},{"url":"https://github.com/glpi-project/glpi/commit/eb1b4299e81abeac764902b422cf7fcd59ac85d0","label":"security-advisories@github.com"},{"url":"https://github.com/glpi-project/glpi/releases/tag/10.0.26","label":"security-advisories@github.com"},{"url":"https://github.com/glpi-project/glpi/releases/tag/11.0.8","label":"security-advisories@github.com"},{"url":"https://github.com/glpi-project/glpi/security/advisories/GHSA-94rp-v9f2-5rj7","label":"security-advisories@github.com"}],"tags":["nvd","cve.org","exploit-available"],"ssvc":{"exploitation":"none","automatable":"no","technicalImpact":"total","timestamp":"2026-09-25T19:06:15.761418Z"},"cvssSource":"cna","exploits":{"github":1,"githubRepos":["https://github.com/7h30th3r0n3/CVE-2026-53625-GLPI-PoC"],"checkedAt":"2026-09-25T20:18:24.162Z"},"exploitAvailable":true,"ingestedAt":"2026-09-25T19:15:38.963Z","slug":"CVE-2026-53625","body":"## Overview\n\nGLPI is a free asset and IT management software package. From 0.70 until 10.0.26 and 11.0.8, a technician can manipulate the authtype value through the API to change another user's authentication method. Under configurations using the legacy API REST interface or SSO logins, this can change a super-administrator's authentication method and enable account takeover. This issue is fixed in versions 11.0.8 and 10.0.26.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"midnight","depthScore":53,"depthScoreParts":{"impact":41.3,"likelihood":0,"exploitation":12,"ransomware":0},"changes":[]}