Known Vulnerabilities for Vikunja by Go-vikunja
Listed below are 10 of the newest known vulnerabilities associated with "Vikunja" by "Go-vikunja".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-40103 json | Vikunja is an open-source self-hosted task management platform. Prior to 2.3.0, Vikunja's scoped API token enforcement for cu... | Not Provided | 2026-04-10 | 2026-04-15 |
| CVE-2026-35602 json | Vikunja is an open-source self-hosted task management platform. Prior to 2.3.0, the Vikunja file import endpoint uses the att... | Not Provided | 2026-04-10 | 2026-04-14 |
| CVE-2026-35601 json | Vikunja is an open-source self-hosted task management platform. Prior to 2.3.0, the CalDAV output generator builds iCalendar ... | Not Provided | 2026-04-10 | 2026-04-13 |
| CVE-2026-35600 json | Vikunja is an open-source self-hosted task management platform. Prior to 2.3.0, task titles are embedded directly into Markdo... | Not Provided | 2026-04-10 | 2026-04-14 |
| CVE-2026-35599 json | Vikunja is an open-source self-hosted task management platform. Prior to 2.3.0, the addRepeatIntervalToTime function uses an ... | Not Provided | 2026-04-10 | 2026-04-10 |
| CVE-2026-35598 json | Vikunja is an open-source self-hosted task management platform. Prior to 2.3.0, the CalDAV GetResource and GetResourcesByList... | Not Provided | 2026-04-10 | 2026-04-14 |
| CVE-2026-35597 json | Vikunja is an open-source self-hosted task management platform. Prior to 2.3.0, the TOTP failed-attempt lockout mechanism is ... | Not Provided | 2026-04-10 | 2026-04-13 |
| CVE-2026-35596 json | Vikunja is an open-source self-hosted task management platform. Prior to 2.3.0, the hasAccessToLabel function contains a SQL ... | Not Provided | 2026-04-10 | 2026-04-14 |
| CVE-2026-35595 json | Vikunja is an open-source self-hosted task management platform. Prior to 2.3.0, the CanUpdate check at pkg/models/project_per... | Not Provided | 2026-04-10 | 2026-04-10 |
| CVE-2026-35594 json | Vikunja is an open-source self-hosted task management platform. Prior to 2.3.0, Vikunja's link share authentication (GetLinkS... | Not Provided | 2026-04-10 | 2026-04-14 |