Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-p668-4pcg-fgmf

Опубликовано: 06 фев. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 5.3
CVSS3: 4.3

Описание

A vulnerability was determined in WeKan up to 8.20. This impacts an unknown function of the file models/boards.js of the component REST Endpoint. This manipulation causes improper access controls. Remote exploitation of the attack is possible. Upgrading to version 8.21 will fix this issue. Patch name: 545566f5663545d16174e0f2399f231aa693ab6e. It is advisable to upgrade the affected component.

A vulnerability was determined in WeKan up to 8.20. This impacts an unknown function of the file models/boards.js of the component REST Endpoint. This manipulation causes improper access controls. Remote exploitation of the attack is possible. Upgrading to version 8.21 will fix this issue. Patch name: 545566f5663545d16174e0f2399f231aa693ab6e. It is advisable to upgrade the affected component.

EPSS

Процентиль: 8%
0.0003
Низкий

5.3 Medium

CVSS4

4.3 Medium

CVSS3

Дефекты

CWE-266

Связанные уязвимости

CVSS3: 4.3
nvd
3 дня назад

A vulnerability was determined in WeKan up to 8.20. This impacts an unknown function of the file models/boards.js of the component REST Endpoint. This manipulation causes improper access controls. Remote exploitation of the attack is possible. Upgrading to version 8.21 will fix this issue. Patch name: 545566f5663545d16174e0f2399f231aa693ab6e. It is advisable to upgrade the affected component.

EPSS

Процентиль: 8%
0.0003
Низкий

5.3 Medium

CVSS4

4.3 Medium

CVSS3

Дефекты

CWE-266