Privilege Escalation in Vikunja Affecting Multiple Versions
CVE-2026-91985
8.7HIGH
What is CVE-2026-91985?
In Vikunja versions prior to 2.6.0, insufficient access controls on the link-share hash field within single-share read endpoints can lead to unauthorized privilege escalation. This allows read-only users to exploit the disclosed hash, converting it into a link-share JWT at the share's level of permission. As a result, attackers may perform unauthorized write operations or execute administrative actions, posing a significant security risk.
Affected Version(s)
vikunja 0 < 2.6.0
vikunja 2.6.0
