Vulnerability Report: GO-2026-4553

Vikunja: Stored XSS via Unsanitized SVG Attachment Upload Leads to Token Exposure in code.vikunja.io/api

For detailed information about this vulnerability, visit https://github.com/go-vikunja/vikunja/security/advisories/GHSA-7jp5-298q-jg98.

Jump to

Keyboard shortcuts

? : This menu
/ : Search site
f or F : Jump to
y or Y : Canonical URL