Authorization Flaw in Wekan Kanban Board System Affects User Voting Integrity
CVE-2025-65782

6.5MEDIUM

Key Information:

Vendor

Wekan

Status
Vendor
CVE Published:
15 December 2025

What is CVE-2025-65782?

An authorization flaw has been identified in Wekan, the Open Source kanban board system, that affects versions up to 18.15. This vulnerability enables board members and potentially other authenticated users to manipulate the vote.positive and vote.negative arrays associated with various cards. Such manipulation could lead to unauthorized voting actions and vote forgery, undermining the platform's integrity. The issue has been addressed in version 18.16, emphasizing the importance for users to update their installations to maintain voting security.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.