← Back

CVE-2025-50179

nvd nist
Published: Jun 25, 2025Modified: Aug 21, 2025

JSON object

Loading...
4.3
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
Exploitability: 2.8 / Impact: 1.4
Source: NVD

Description

Tuleap is an Open Source Suite to improve management of software developments and collaboration. An attacker could use a cross-site request forgery vulnerability in Tuleap Community Edition prior to version 16.8.99.1749830289 and Tuleap Enterprise Edition prior to version 16.9-1 to trick victims into changing the canned responses. Tuleap Community Edition 16.8.99.1749830289 and Tuleap Enterprise Edition 16.9-1 contain a patch for the issue.

Affected (2)

Products: Enalean: Tuleap
1 product
Tuleap
Configuration A
2 vulnerable
Vulnerable SoftwareAffected Versions
Enalean
Before 16.8.99.1749830289
Before 16.9-1

References (4)

Source: security-advisories@github.com
Third Party Advisory
Source: security-advisories@github.com
Vendor Advisory

Timeline

No history available yet.