logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2024-46980

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2024-46980

Description:
Tuleap is a tool for end to end traceability of application and system developments. Prior to Tuleap Community Edition 15.13.99.37, Tuleap Enterprise Edition 15.13-3, and Tuleap Enterprise Edition 15.12-6, a site administrator could create an artifact link type with a forward label allowing them to execute uncontrolled code (or at least achieve content injection) in a mail client. Tuleap Community Edition 15.13.99.37, Tuleap Enterprise Edition 15.13-3, and Tuleap Enterprise Edition 15.12-6 fix this issue.
Last updated date:
10/16/2024
Type:
exploit
Confidence:
HIGH
Date of publishing:
10/16/2024
Reference url to background

https://tuleap.net/plugins/tracker/?aid=39689

Vulnerability FeedContributorsAboutBlog

@inTheWild

©2024

Privacy Policy