Known vulnerabilities in Wekan - page 3

Software: Wekan
Software CPE: cpe:2.3:a:wekan.github.io:wekan:*:*:*:*:*:*:*:*
Total vulnerabilities: 83
Public exploits: 8
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Wekan Wekan is affected by 83 known vulnerabilities: 6 high, 22 medium, 55 low Critical High Medium Low

Vulnerabilities (83)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU145029 - Authorization Bypass Through User-Controlled Key
CWE-639 Low
No
No
11.08 25.08.2026 SB2026082524
#VU145027 - Improper Authorization
CWE-285 Low
No
No
11.08 25.08.2026 SB2026082524
#VU145026 - Improper Authorization
CWE-285 Low
No
No
11.08 25.08.2026 SB2026082524
#VU145025 - Information Exposure Through an Error Message
CWE-209 Low
No
No
11.08 25.08.2026 SB2026082524
#VU145024 - Incorrect Authorization
CWE-863 Low
No
No
11.08 25.08.2026 SB2026082524
#VU145023 - Incorrect Authorization
CWE-863 Low
No
No
11.07 25.08.2026 SB2026082523
#VU145022 - Incorrect Authorization
CWE-863 Low
No
No
11.07 25.08.2026 SB2026082523
#VU145021 - Missing Authorization
CWE-862 Low
No
No
11.07 25.08.2026 SB2026082523
#VU144221 - Improper Restriction of Excessive Authentication Attempts
CWE-307 Medium
No
No
10.98 18.08.2026 SB2026081868
#VU144220 - Authorization Bypass Through User-Controlled Key
CWE-639 Low
No
No
10.92 18.08.2026 SB2026081867
#VU144219 - Exposure of sensitive information to an unauthorized actor
CWE-200 Low
No
No
10.92 18.08.2026 SB2026081867
#VU144218 - Incorrect Authorization
CWE-863 Low
No
No
10.92 18.08.2026 SB2026081867
#VU144217 - Unverified Ownership
CWE-283 Low
No
No
10.92 18.08.2026 SB2026081867
#VU144216 - Exposure of sensitive information to an unauthorized actor
CWE-200 Low
No
No
10.92 18.08.2026 SB2026081867
#VU144215 - Improper Neutralization of Special Elements in Data Query Logic
CWE-943 Low
No
No
10.82 18.08.2026 SB2026081866
#VU144214 - Authorization Bypass Through User-Controlled Key
CWE-639 Low
No
No
10.83 18.08.2026 SB2026081865
#VU144213 - Incorrect Authorization
CWE-863 Low
No
No
10.74 18.08.2026 SB2026081864
#VU144212 - Missing Authorization
CWE-862 Low
No
No
10.74 18.08.2026 SB2026081864
#VU144211 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CWE-22 Low
No
No
10.74 18.08.2026 SB2026081864
#VU144210 - Authorization Bypass Through User-Controlled Key
CWE-639 Low
No
No
10.74 18.08.2026 SB2026081864


Showing elements 41 - 60 out of 83