Authorization Flaw in Wekan Kanban Board System Affects User Voting Integrity
CVE-2025-65782

Currently unrated

Key Information:

Vendor

Wekan

Status
Vendor
CVE Published:
15 December 2025

What is CVE-2025-65782?

An authorization flaw has been identified in Wekan, the Open Source kanban board system, that affects versions up to 18.15. This vulnerability enables board members and potentially other authenticated users to manipulate the vote.positive and vote.negative arrays associated with various cards. Such manipulation could lead to unauthorized voting actions and vote forgery, undermining the platform's integrity. The issue has been addressed in version 18.16, emphasizing the importance for users to update their installations to maintain voting security.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-65782 : Authorization Flaw in Wekan Kanban Board System Affects User Voting Integrity