CVE List

CVE-2026-25859

Critical 8.8

Wekan versions prior to 8.20 allow non-administrative users to access migration functionality due to insufficient permission checks, potentially resulting in unauthorized migration operations.

Published February 7, 2026.

Affected software

Get alerts for Wekan Project Wekan

Reference links