PT-2026-6947 · Wekan · Wekan

Megamansec

·

Publicado

2026-02-08

·

Atualizado

2026-02-08

·

CVE-2026-2208

CVSS v3.1

6.5

Média

VetorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions WeKan versions prior to 8.21
Description A security issue exists in WeKan related to missing authorization within the Rules Handler component. The problem resides in an unknown function of the file server/publications/rules.js. This can be exploited remotely.
Recommendations Upgrade to version 8.21 to resolve the issue.

Correção

Incorrect Authorization

Missing Authorization

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2026-2208

Produtos afetados

Wekan