Metrics
Affected Vendors & Products
Tue, 10 Feb 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 09 Feb 2026 11:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Wekan Project
Wekan Project wekan |
|
| Vendors & Products |
Wekan Project
Wekan Project wekan |
Sun, 08 Feb 2026 02:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was detected in WeKan up to 8.18. The affected element is the function setCreateTranslation of the file client/components/settings/translationBody.js of the component Custom Translation Handler. The manipulation results in improper authorization. The attack can be launched remotely. Upgrading to version 8.19 is sufficient to fix this issue. The patch is identified as f244a43771f6ebf40218b83b9f46dba6b940d7de. It is suggested to upgrade the affected component. | |
| Title | WeKan Custom Translation translationBody.js setCreateTranslation improper authorization | |
| Weaknesses | CWE-266 CWE-285 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2026-02-08T01:14:34.308Z
Updated: 2026-02-10T19:43:24.704Z
Reserved: 2026-02-08T01:14:09.539Z
Link: CVE-2026-2209
Updated: 2026-02-10T19:43:20.519Z
Status : Awaiting Analysis
Published: 2026-02-08T02:15:57.820
Modified: 2026-02-09T16:08:35.290
Link: CVE-2026-2209
No data.