CVE-2025-64498 - Tuleap has a Cross-Site Request Forgery (CSRF) vulnerability

CVE-2025-64498 - Tuleap has a Cross-Site Request Forgery (CSRF) vulnerability

CVE ID : CVE-2025-64498 Published : Dec. 8, 2025, 11:15 p.m. | 55 minutes ago Description : Tuleap is an Open Source Suite for management of software development and collaboration. Tuleap Community Edition versions below 17.0.99.1762444754 and Tuleap Enterprise Edition versions prior to 17.0-2, 16.13-7 and 16.12-10 allow attackers trick victims into changing tracker general settings. This issue is fixed in version Tuleap Community Edition version 17.0.99.1762444754 and Tuleap Enterprise Edition versions 17.0-2, 16.13-7 and 16.12-10. Severity: 4.6 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Severity
MEDIUM
Published
Dec. 8, 2025

Source: Telegram CVE Monitor