CVE-2026-25924 | Kanboard up to 1.2.49 Plugin Installation Interface authorization (GHSA-grch-p7vf-vc4f)
A vulnerability was found in Kanboard up to 1.2.49. It has been declared as critical. This impacts an unknown function of the component Plugin Installation Interface. Such manipulation leads to incorrect authorization.
This vulnerability is documented as CVE-2026-25924. The attack can be executed remotely. There is not any exploit available.
It is recommended to upgrade the affected component.