
CVE-2026-25566 WeKan versions prior to 8.19 contain an authorization vulnerability in card move logic. A user can specify a destination board/list/swimlane without adequate authoriz… https://www.cve.org/CVERecord?id=CVE-2026-25566
Post summary
The text announces an authorization flaw in WeKan versions <8.19 that allows improper card movement. It provides minimal technical detail but no PoC, exploit, patch, or evidence of active exploitation.
