Open Redirect Vulnerability in Kanboard Project Management Software
CVE-2026-21879
4.7MEDIUM
What is CVE-2026-21879?
Kanboard, a project management tool leveraging Kanban principles, is susceptible to an Open Redirect vulnerability in versions prior to 1.2.49. This flaw enables malicious entities to redirect logged-in users to harmful sites by crafting deceptive URLs, circumventing existing validation mechanisms. This exploitation can lead to various threats including phishing attempts, credential theft, and potential malware distribution. Users are strongly encouraged to upgrade to version 1.2.49 to mitigate risks.
Affected Version(s)
kanboard < 1.2.49
