CVE-2026-35601
Medium Severity
Description
Vikunja is an open-source self-hosted task management platform. Prior to 2.3.0, the CalDAV output generator builds iCalendar VTODO entries via raw string conca...
Related Vulnerabilities
- CVE-2026-40199: Net::CIDR::Lite versions before 0.23 for Perl mishandles IPv4 mapped IPv6 addresses, which may allow MEDIUM
- CVE-2026-4155: ChargePoint Home Flex Inclusion of Sensitive Information in Source Code Information Disclosure Vulne HIGH
- CVE-2026-33092: Local privilege escalation due to improper handling of environment variables. The following products HIGH
- CVE-2026-3691: OpenClaw Client PKCE Verifier Information Disclosure Vulnerability. This vulnerability allows remote MEDIUM
- CVE-2026-29861: PHP-MYSQL-User-Login-System v1.0 was discovered to contain a SQL injection vulnerability via the use CRITICAL
Related Coverage
Threat Actors