CVE-2022-31032
- EPSS 0.35%
- Veröffentlicht 29.06.2022 18:15:08
- Zuletzt bearbeitet 21.11.2024 07:03:45
Tuleap is a Free & Open Source Suite to improve management of software developments and collaboration. In versions prior to 13.9.99.58 authorizations are not properly verified when creating projects or trackers from projects marked as templates. User...
CVE-2022-31058
- EPSS 1.34%
- Veröffentlicht 29.06.2022 18:15:08
- Zuletzt bearbeitet 21.11.2024 07:03:48
Tuleap is a Free & Open Source Suite to improve management of software developments and collaboration. In versions prior to 13.9.99.95 Tuleap does not sanitize properly user inputs when constructing the SQL query to retrieve data for the tracker repo...
CVE-2022-31063
- EPSS 0.51%
- Veröffentlicht 29.06.2022 18:15:08
- Zuletzt bearbeitet 21.11.2024 07:03:49
Tuleap is a Free & Open Source Suite to improve management of software developments and collaboration. In versions prior to 13.9.99.111 the title of a document is not properly escaped in the search result of MyDocmanSearch widget and in the administr...
CVE-2022-24896
- EPSS 0.16%
- Veröffentlicht 09.06.2022 06:15:07
- Zuletzt bearbeitet 21.11.2024 06:51:20
Tuleap is a Free & Open Source Suite to manage software developments and collaboration. In versions prior to 13.7.99.239 Tuleap does not properly verify authorizations when displaying the content of tracker report renderer and chart widgets. Maliciou...
CVE-2021-43806
- EPSS 0.91%
- Veröffentlicht 15.12.2021 20:15:08
- Zuletzt bearbeitet 21.11.2024 06:29:49
Tuleap is a Libre and Open Source tool for end to end traceability of application and system developments. In affected versions Tuleap does not sanitize properly user settings when constructing the SQL query to browse and search commits in the CVS re...
CVE-2021-43782
- EPSS 0.81%
- Veröffentlicht 15.12.2021 20:15:08
- Zuletzt bearbeitet 21.11.2024 06:29:46
Tuleap is a Libre and Open Source tool for end to end traceability of application and system developments. This is a follow up to GHSA-887w-pv2r-x8pm/CVE-2021-41276, the initial fix was incomplete. Tuleap does not sanitize properly the search filter ...
CVE-2021-41276
- EPSS 0.55%
- Veröffentlicht 15.12.2021 20:15:08
- Zuletzt bearbeitet 21.11.2024 06:25:56
Tuleap is a Libre and Open Source tool for end to end traceability of application and system developments. In affected versions Tuleap does not sanitize properly the search filter built from the ldap_id attribute of a user during the daily synchroniz...
CVE-2021-41155
- EPSS 0.86%
- Veröffentlicht 18.10.2021 22:15:07
- Zuletzt bearbeitet 21.11.2024 06:25:37
Tuleap is a Free & Open Source Suite to improve management of software developments and collaboration. In affected versions Tuleap does not sanitize properly user inputs when constructing the SQL query to browse and search revisions in the CVS reposi...
CVE-2021-41154
- EPSS 0.86%
- Veröffentlicht 18.10.2021 22:15:07
- Zuletzt bearbeitet 21.11.2024 06:25:36
Tuleap is a Free & Open Source Suite to improve management of software developments and collaboration. In affected versions an attacker with read access to a "SVN core" repository could execute arbitrary SQL queries. The following versions contain th...
CVE-2021-41147
- EPSS 1.09%
- Veröffentlicht 15.10.2021 14:15:08
- Zuletzt bearbeitet 21.11.2024 06:25:35
Tuleap Open ALM is a libre and open source tool for end to end traceability of application and system developments. Prior to version 11.16.99.173 of Community Edition and versions 11.16-6 and 11.15-8 of Enterprise Edition, an attacker with admin righ...