Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-2209

Опубликовано: 08 фев. 2026
Источник: nvd
CVSS3: 6.3
CVSS2: 6.5
EPSS Низкий

Описание

A vulnerability was detected in WeKan up to 8.18. The affected element is the function setCreateTranslation of the file client/components/settings/translationBody.js of the component Custom Translation Handler. The manipulation results in improper authorization. The attack can be launched remotely. Upgrading to version 8.19 is sufficient to fix this issue. The patch is identified as f244a43771f6ebf40218b83b9f46dba6b940d7de. It is suggested to upgrade the affected component.

EPSS

Процентиль: 13%
0.00043
Низкий

6.3 Medium

CVSS3

6.5 Medium

CVSS2

Дефекты

CWE-266

Связанные уязвимости

CVSS3: 6.3
debian
1 день назад

A vulnerability was detected in WeKan up to 8.18. The affected element ...

CVSS3: 6.3
github
1 день назад

A vulnerability was detected in WeKan up to 8.18. The affected element is the function setCreateTranslation of the file client/components/settings/translationBody.js of the component Custom Translation Handler. The manipulation results in improper authorization. The attack can be launched remotely. Upgrading to version 8.19 is sufficient to fix this issue. The patch is identified as f244a43771f6ebf40218b83b9f46dba6b940d7de. It is suggested to upgrade the affected component.

EPSS

Процентиль: 13%
0.00043
Низкий

6.3 Medium

CVSS3

6.5 Medium

CVSS2

Дефекты

CWE-266