CVE-2026-1963 | WeKan up to 8.20 Attachment Storage models/attachments.js MoveStorageBleed access control (EUVD-2026-5526)
A vulnerability classified as critical was found in WeKan up to 8.20. This affects an unknown function of the file models/attachments.js of the component Attachment Storage. The manipulation results in improper access controls.
This vulnerability is cataloged as CVE-2026-1963. The attack may be launched remotely. There is no exploit available.
Upgrading the affected component is advised.