CVE-2026-68581: Vikunja API Token Management Vulnerability
CVE-2026-68581 is a high-severity vulnerability in Vikunja versions 0.22.0 through 2.3.0 that allows an authenticated attacker to manipulate API tokens of other users. The vulnerability has a CVSS score of 8.1 and is caused by a failure to validate the principal type in API token management. This vulnerability can lead to unauthorized access and control of user API tokens.