CVE-2023-38508
- EPSS 0.15%
- Veröffentlicht 24.08.2023 23:15:08
- Zuletzt bearbeitet 21.11.2024 08:13:43
Tuleap is an open source suite to improve management of software developments and collaboration. In Tuleap Community Edition prior to version 14.11.99.28 and Tuleap Enterprise Edition prior to versions 14.10-6 and 14.11-3, the preview of an artifact ...
CVE-2023-35929
- EPSS 0.57%
- Veröffentlicht 25.07.2023 18:15:10
- Zuletzt bearbeitet 21.11.2024 08:08:59
Tuleap is a free and open source suite to improve management of software development and collaboration. Prior to version 14.10.99.4 of Tuleap Community Edition and prior to versions 14.10-2 and 14.9-5 of Tuleap Enterprise Edition, content displayed i...
CVE-2023-35938
- EPSS 0.1%
- Veröffentlicht 29.06.2023 20:15:09
- Zuletzt bearbeitet 21.11.2024 08:09:00
Tuleap is a Free & Open Source Suite to improve management of software developments and collaboration. When switching from a project visibility that allows restricted users to `Private without restricted`, restricted users that are project administr...
CVE-2023-32072
- EPSS 0.39%
- Veröffentlicht 29.05.2023 21:15:09
- Zuletzt bearbeitet 21.11.2024 08:02:39
Tuleap is an open source tool for end to end traceability of application and system developments. Tuleap Community Edition prior to version 14.8.99.60 and Tuleap Enterprise edition prior to 14.8-3 and 14.7-7, the logs of the triggered Jenkins job URL...
CVE-2023-30619
- EPSS 0.53%
- Veröffentlicht 04.05.2023 14:15:11
- Zuletzt bearbeitet 29.01.2025 17:15:25
Tuleap Open ALM is a Libre and Open Source tool for end to end traceability of application and system developments. The title of an artifact is not properly escaped in the tooltip. A malicious user with the capability to create an artifact or to edit...
CVE-2023-23938
- EPSS 0.21%
- Veröffentlicht 20.04.2023 17:15:07
- Zuletzt bearbeitet 21.11.2024 07:47:08
Tuleap is a Free & Source tool for end to end traceability of application and system developments. Affected versions are subject to a cross site scripting attack which can be injected in the name of a color of select box values of a tracker and then ...
CVE-2022-46160
- EPSS 0.15%
- Veröffentlicht 13.12.2022 07:15:13
- Zuletzt bearbeitet 21.11.2024 07:30:13
Tuleap is an Open Source Suite to improve management of software developments and collaboration. In versions prior to 14.2.99.104, project level authorizations are not properly verified when accessing the project "homepage"/dashboards. Users not auth...
CVE-2022-23473
- EPSS 0.13%
- Veröffentlicht 13.12.2022 07:15:09
- Zuletzt bearbeitet 21.11.2024 06:48:38
Tuleap is an Open Source Suite to improve management of software developments and collaboration. In versions prior to 14.2.99.148, Authorizations are not properly verified when accessing MediaWiki standalone resources. Users with read only permission...
CVE-2022-39233
- EPSS 0.23%
- Veröffentlicht 19.10.2022 11:15:11
- Zuletzt bearbeitet 21.11.2024 07:17:50
Tuleap is a Free & Open Source Suite to improve management of software developments and collaboration. In versions 12.9.99.228 and above, prior to 14.0.99.24, authorizations are not properly verified when updating the branch prefix used by the GitLab...
CVE-2022-31128
- EPSS 0.16%
- Veröffentlicht 01.08.2022 17:15:08
- Zuletzt bearbeitet 21.11.2024 07:03:57
Tuleap is a Free & Open Source Suite to improve management of software developments and collaboration. In affected versions Tuleap does not properly verify permissions when creating branches with the REST API in Git repositories using the fine graine...