CVE-2026-35597
Medium Severity
Description
Vikunja is an open-source self-hosted task management platform. Prior to 2.3.0, the TOTP failed-attempt lockout mechanism is non-functional due to a database t...
Related Vulnerabilities
- CVE-2026-35656: OpenClaw before 2026.3.22 contains an authentication bypass vulnerability in the X-Forwarded-For hea MEDIUM
- CVE-2026-6006: A vulnerability has been found in code-projects Patient Record Management System 1.0. The impacted e MEDIUM
- CVE-2026-35195: Wasmtime has out-of-bounds write or crash when transcoding component model strings MEDIUM
- CVE-2026-5226: The Optimole – Optimize Images in Real Time plugin for WordPress is vulnerable to Reflected Cross-Si MEDIUM
- CVE-2026-39922: GeoNode versions 4.0 before 4.4.5 and 5.0 before 5.0.2 contain a server-side request forgery vulnera N/A
Related Coverage
Threat Actors