CVE-2024-37167

Tuleap is an Open Source Suite to improve management of software developments and collaboration. Users are able to see backlog items that they should not see. This issue has been patched in Tuleap Community Edition version 15.9.99.97.
Configurations

No configuration.

History

21 Nov 2024, 09:23

Type Values Removed Values Added
References () https://github.com/Enalean/tuleap/commit/13eec93a353d2daf47bb8b9c548cc02f78b93a5e - () https://github.com/Enalean/tuleap/commit/13eec93a353d2daf47bb8b9c548cc02f78b93a5e -
References () https://github.com/Enalean/tuleap/security/advisories/GHSA-4c9f-284j-phvj - () https://github.com/Enalean/tuleap/security/advisories/GHSA-4c9f-284j-phvj -
References () https://tuleap.net/plugins/git/tuleap/tuleap/stable?a=commit&h=13eec93a353d2daf47bb8b9c548cc02f78b93a5e - () https://tuleap.net/plugins/git/tuleap/tuleap/stable?a=commit&h=13eec93a353d2daf47bb8b9c548cc02f78b93a5e -
References () https://tuleap.net/plugins/tracker/?aid=38297 - () https://tuleap.net/plugins/tracker/?aid=38297 -

26 Jun 2024, 12:44

Type Values Removed Values Added
Summary
  • (es) Tuleap es una suite de código abierto para mejorar la gestión de los desarrollos de software y la colaboración. Los usuarios pueden ver los elementos pendientes que no deberían ver. Este problema se solucionó en la versión 15.9.99.97 de Tuleap Community Edition.

25 Jun 2024, 20:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-06-25 20:15

Updated : 2024-11-21 09:23


NVD link : CVE-2024-37167

Mitre link : CVE-2024-37167

CVE.ORG link : CVE-2024-37167


JSON object : View

Products Affected

No product.

CWE
CWE-285

Improper Authorization