Metrics
Affected Vendors & Products
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Tue, 10 Feb 2026 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Kanboard
Kanboard kanboard |
|
| Vendors & Products |
Kanboard
Kanboard kanboard |
Tue, 10 Feb 2026 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 10 Feb 2026 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Kanboard is project management software focused on Kanban methodology. Prior to 1.2.50, the getSwimlane API method lacks project-level authorization, allowing authenticated users to access swimlane data from projects they cannot access. This vulnerability is fixed in 1.2.50. | |
| Title | Kanboard is missing authorization check in getSwimlane API allows cross-project data access | |
| Weaknesses | CWE-639 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2026-02-10T17:06:13.410Z
Reserved: 2026-02-02T19:59:47.373Z
Link: CVE-2026-25530
Updated: 2026-02-10T17:06:09.670Z
Status : Awaiting Analysis
Published: 2026-02-10T17:16:21.910
Modified: 2026-02-10T21:51:48.077
Link: CVE-2026-25530
No data.
OpenCVE Enrichment
Updated: 2026-02-10T21:42:01Z