
CVE-2026-33315 Vikunja is an open-source self-hosted task management platform. Prior to version 2.2.0, the Caldav endpoint allows login using Basic Authentication, which in turn all… https://www.cve.org/CVERecord?id=CVE-2026-33315
Post summary
The post discloses that Vikunja’s Caldav endpoint used Basic Authentication before v2.2.0, indicating an authentication flaw; it contains no PoC, exploit, or mitigation details.

