CVE-2025-24029
03.02.2025, 22:15
Tuleap is an Open Source Suite to improve management of software developments and collaboration. Users (possibly anonymous ones if the widget is used in the dashboard of a public project) might get access to artifacts they should not see. This issue has been addressed in Tuleap Community Edition 16.3.99.1737562605 as well as Tuleap Enterprise Edition 16.3-5 and Tuleap Enterprise Edition 16.2-7. Users are advised to upgrade. There are no known workarounds for this vulnerability.Enginsight
Vendor | Product | Version |
---|---|---|
enalean | tuleap | 𝑥 < 16.2-7 |
enalean | tuleap | 𝑥 < 16.3.99.1737562605 |
enalean | tuleap | 16.3 ≤ 𝑥 < 16.3-5 |
𝑥
= Vulnerable software versions
References