CVE-2017-12850: Kanboard
High severity, CVSS 8.8. EPSS: 1.3% chance of exploitation in the next 30 days.
An authenticated standard user could reset the password of other users (including the admin) by altering form data. Affects kanboard before 1.0.46.
Affected products
- Kanboard Kanboard: up to and including 1.0.45
Published 2017-08-14. Last modified 2026-06-17.