CVE-2026-30844 | Wekan up to 8.33 Internal Network Service parseActivities/parseActions server-side request forgery (GHSL-2026-045)
A vulnerability was found in Wekan up to 8.33 and classified as critical. This vulnerability affects the function parseActivities/parseActions of the component Internal Network Service Handler. Executing a manipulation can lead to server-side request forgery.
This vulnerability appears as CVE-2026-30844. The attack may be performed from remote. There is no available exploit.
It is suggested to upgrade the affected component.