Vulnerabilidades en kanboard
26 resultadosCVE-2026-33058HIGHKanboard has Authenticated SQL Injection in Project Permissions HandlerEPSS 0.3%CVE-2026-56774MEDIUMKanboard - Cross-User Deletion of Persistent Login Sessions via Unvalidated Session IDEPSS 0.3%CVE-2026-21879MEDIUMKanboard vulnerable to Open Redirect via protocol-relative URLsEPSS 0.3%CVE-2026-25530MEDIUMKanboard is missing authorization check in getSwimlane API allows cross-project data accessEPSS 0.2%CVE-2026-25531MEDIUMKanboard TaskCreationController::duplicateProjects() endpoint does not validate user permissions for target projectsEPSS 0.2%CVE-2026-24885MEDIUMKanboard Affected by Cross-Site Request Forgery (CSRF) via Content-Type Misconfiguration in Project Role AssignmentEPSS 0.2%