Published onSeptember 25, 2023Wekan; Privilege Escalation from User to AdministratorWekanBroken-Access-ControlPrivEscExploitWebAppsWebsocketAn authenticated threat actor has the ability of escalating his/her privilges to system administrator by exploiting a couple of endpoints via specially crafted HTTP requests.