CVE-2025-53922
EUVD-2025-20454419.12.2025, 16:15
Galette is a membership management web application for non profit organizations. Starting in version 1.1.4 and prior to version 1.2.0, a user who is logged in as group manager may bypass intended restrictions on Contributions and Transactions. Version 1.2.0 fixes the issue.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| galette | galette | 1.1.4 ≤ 𝑥 < 1.2.0 |
𝑥
= Vulnerable software versions