CVE-2025-60786
15.12.2025, 16:15
A Zip Slip vulnerability in the import a Project component of iceScrum v7.54 Pro On-prem allows attackers to execute arbitrary code via uploading a crafted Zip file.
| Vendor | Product | Version |
|---|---|---|
| kagilum | icescrum | 𝑥 ≤ 7.54 |
𝑥
= Vulnerable software versions