CVE-2026-57458 | go-vikunja Vikunja 2.3.0 /api/v1/oauth/authorize oauth.authorize privileges management

SecurityVulns

A vulnerability was found in go-vikunja Vikunja 2.3.0. It has been declared as critical. The impacted element is the function oauth.authorize of the file /api/v1/oauth/authorize. The manipulation results in improper privilege management.

This vulnerability is identified as CVE-2026-57458. The attack can be executed remotely. There is not any exploit available.

It is recommended to upgrade the affected component.VulDB Recent EntriesRead More