CVE-2025-55010 | kanboard up to 1.2.46 /plugins ProjectEventActvityFormatter deserialization (GHSA-359x-c69j-q64r)
A vulnerability described as problematic has been identified in kanboard up to 1.2.46. This issue affects the function ProjectEventActvityFormatter of the file /plugins. Executing manipulation can lead to deserialization.
This vulnerability is handled as CVE-2025-55010. The attack can be executed remotely. There is not any exploit available.
Upgrading the affected component is recommended.