CVE-2026-35597
Medium Severity
Description
Vikunja is an open-source self-hosted task management platform. Prior to 2.3.0, the TOTP failed-attempt lockout mechanism is non-functional due to a database t...
Related Vulnerabilities
- CVE-2026-6036: A vulnerability was found in code-projects Vehicle Showroom Management System 1.0. The impacted elem MEDIUM
- CVE-2026-40226: In nspawn in systemd 233 through 259 before 260, an escape-to-host action can occur via a crafted op MEDIUM
- CVE-2026-35667: OpenClaw before 2026.3.24 contains an incomplete fix for CVE-2026-27486 where the !stop chat command MEDIUM
- CVE-2026-25854: Occasional URL redirection to untrusted Site ('Open Redirect') vulnerability in Apache Tomcat via th MEDIUM
- CVE-2026-35663: OpenClaw before 2026.3.25 contains a privilege escalation vulnerability allowing non-admin operators HIGH
Related Coverage
Threat Actors