Description

Kanboard is project management software focused on Kanban methodology. Prior to 1.2.50, the getSwimlane API method lacks project-level authorization, allowing authenticated users to access swimlane data from projects they cannot access. This vulnerability is fixed in 1.2.50.

INFO

Published Date :

2026-02-10T16:47:58.617Z

Last Modified :

2026-02-10T17:06:13.410Z

Source :

GitHub_M
AFFECTED PRODUCTS

The following products are affected by CVE-2026-25530 vulnerability.

Vendors Products
Kanboard
  • Kanboard

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact