CNNVD-202602-1081 Information

CNNVD ID

CNNVD-202602-1081

CVE-2026-25859

  • CNNVD Published: 2026-02-07

Description (Chinese)

WeKan是WeKan开源的一个看板应用程序。 WeKan 8.20之前版本存在安全漏洞,该漏洞源于权限检查不足,可能导致非管理用户访问迁移功能。

Description (English)

Wekan is a panel application from WeKan Open Source. There was a security loophole in the previous version of WeKan 8.20, which stemmed from inadequate access checks, which could lead to unmanaged user access migration.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

WeKan

Published

2026-02-07

Last Modified

2026-02-24

References

https://wekan.fi/ https://www.vulncheck.com/advisories/wekan-migration-functionality-insufficient-permission-checks https://github.com/wekan/wekan/commit/cbb1cd78de3e40264a5e047ace0ce27f8635b4e6 https://access.redhat.com/security/cve/cve-2026-25859

Patch

https://github.com/wekan/wekan/releases

Share on: