Description
Tuleap Open ALM is a Libre and Open Source tool for end to end traceability of application and system developments. The title of an artifact is not properly escaped in the tooltip. A malicious user with the capability to create an artifact or to edit a field title could force victim to execute uncontrolled code. This issue has been patched in version 14.7.99.143.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-34991 | Tuleap Open ALM is a Libre and Open Source tool for end to end traceability of application and system developments. The title of an artifact is not properly escaped in the tooltip. A malicious user with the capability to create an artifact or to edit a field title could force victim to execute uncontrolled code. This issue has been patched in version 14.7.99.143. |
References
History
Wed, 29 Jan 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2025-01-29T16:41:09.864Z
Reserved: 2023-04-13T13:25:18.832Z
Link: CVE-2023-30619
Updated: 2024-08-02T14:28:51.721Z
Status : Modified
Published: 2023-05-04T14:15:11.663
Modified: 2025-01-29T17:15:25.303
Link: CVE-2023-30619
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD