CVE-2026-68560 | Wekan up to 9.74 File Validation models/fileValidation.js shellQuote path os command injection
A vulnerability classified as critical was found in Wekan up to 9.74. This vulnerability affects the function shellQuote of the file models/fileValidation.js of the component File Validation. The manipulation of the argument path results in os command injection.
This vulnerability is known as CVE-2026-68560. It is possible to launch the attack remotely. No exploit is available.
Upgrading the affected component is advised.VulDB Recent EntriesRead More