A vulnerability was found in Kimai up to 2.45.x. It has been declared as problematic. Affected by this issue is some unknown functionality. The manipulation results in improper neutralization of special elements used in a template engine.

This vulnerability is known as CVE-2026-23626. It is possible to launch the attack remotely. No exploit is available.

It is recommended to upgrade the affected component.