Aerendir Mobile[verified]@AerendirMobileDisclousre
The post describes CVE‑2026‑27575 as a critical vulnerability where weak passwords combined with session persistence allow an attacker to maintain full access even after the victim changes their password. The CVSS score of 9.1 highlights its severity.
The AI generalist[verified]@AIengineerlifeDisclosure
The post announces a critical vulnerability in Vikunja that allows weak passwords and persistent sessions after password changes, enabling attackers to maintain access.
CVETodo[verified]@CveTodoGeneral
The post announces CVE‑2026‑27575 affecting Vikunja, labeling it a critical vulnerability with potential remote code execution and privilege escalation, but offers no further technical or mitigation details.
PulsePatch.io@pulsepatchioGeneral
The post alerts to a critical flaw in Vikunja involving weak password policy and persistent sessions, but offers no evidence of exploits, patches, or active attacks.
CVE@CVEnewDisclosure
The CVE highlights a weak password policy in Vikunja prior to version 2.0.0, allowing easily guessable passwords such as 1234 or password.
cvereports@_cvereportsDisclosure
CVE-2026-27575 is a severe authentication flaw in Vikunja, announced with limited technical detail and no PoC, exploit, or patch information provided.