Vikunja 是一款开源的自托管任务管理平台。在版本 2.3.0 中,一个仅限制为 权限的 scoped API token 可以调用 ,获取 OAuth 授权码,并在 将该授权码交换为普通的 bearer JSON Web Token (JWT) 和刷新令牌。由此生成的凭证不受原始 API token 权限的限制,允许以同一用户身份访问其声明范围之外的路由。该漏洞已在版本 2.4.0 中修复。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| go-vikunja | vikunja | = 2.3.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-62376 | 8.1 HIGH | Vikunja: Plaintext storage of password-reset/email-confirm tokens in database enables acco |
| CVE-2026-62367 | 7.5 HIGH | Vikunja: OIDC email-fallback account linking ignores email_verified, enabling local-accoun |
No comments yet