CVE-2026-35602
Medium Severity
Description
Vikunja is an open-source self-hosted task management platform. Prior to 2.3.0, the Vikunja file import endpoint uses the attacker-controlled Size field from t...
Related Vulnerabilities
- CVE-2026-4154: GIMP XPM File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allow HIGH
- CVE-2025-58913: Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusio HIGH
- CVE-2026-6057: FalkorDB Browser 1.9.3 contains an unauthenticated path traversal vulnerability in the file upload A CRITICAL
- CVE-2026-35577: Apollo MCP Server is a Model Context Protocol server that exposes GraphQL operations as MCP tools. P MEDIUM
- CVE-2026-5055: NoMachine Uncontrolled Search Path Element Local Privilege Escalation Vulnerability. This vulnerabil HIGH
Related Coverage
Threat Actors