Логотип exploitDog
bind:CVE-2026-1898
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2026-1898

Количество 3

Количество 3

nvd логотип

CVE-2026-1898

2 месяца назад

A vulnerability was determined in WeKan up to 8.20. This affects an unknown part of the file packages/wekan-ldap/server/syncUser.js of the component LDAP User Sync. This manipulation causes improper access controls. It is possible to initiate the attack remotely. Upgrading to version 8.21 is able to mitigate this issue. Patch name: 146905a459106b5d00b4f09453a6554255e6965a. You should upgrade the affected component.

CVSS3: 6.3
EPSS: Низкий
debian логотип

CVE-2026-1898

2 месяца назад

A vulnerability was determined in WeKan up to 8.20. This affects an un ...

CVSS3: 6.3
EPSS: Низкий
github логотип

GHSA-ccch-v5jp-xrrh

2 месяца назад

A vulnerability was determined in WeKan up to 8.20. This affects an unknown part of the file packages/wekan-ldap/server/syncUser.js of the component LDAP User Sync. This manipulation causes improper access controls. It is possible to initiate the attack remotely. Upgrading to version 8.21 is able to mitigate this issue. Patch name: 146905a459106b5d00b4f09453a6554255e6965a. You should upgrade the affected component.

CVSS3: 6.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2026-1898

A vulnerability was determined in WeKan up to 8.20. This affects an unknown part of the file packages/wekan-ldap/server/syncUser.js of the component LDAP User Sync. This manipulation causes improper access controls. It is possible to initiate the attack remotely. Upgrading to version 8.21 is able to mitigate this issue. Patch name: 146905a459106b5d00b4f09453a6554255e6965a. You should upgrade the affected component.

CVSS3: 6.3
0%
Низкий
2 месяца назад
debian логотип
CVE-2026-1898

A vulnerability was determined in WeKan up to 8.20. This affects an un ...

CVSS3: 6.3
0%
Низкий
2 месяца назад
github логотип
GHSA-ccch-v5jp-xrrh

A vulnerability was determined in WeKan up to 8.20. This affects an unknown part of the file packages/wekan-ldap/server/syncUser.js of the component LDAP User Sync. This manipulation causes improper access controls. It is possible to initiate the attack remotely. Upgrading to version 8.21 is able to mitigate this issue. Patch name: 146905a459106b5d00b4f09453a6554255e6965a. You should upgrade the affected component.

CVSS3: 6.3
0%
Низкий
2 месяца назад

Уязвимостей на страницу