Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-377j-wj38-4728 | Weblate has a long session expiry when verifying second factor |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Thu, 18 Sep 2025 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:weblate:weblate:*:*:*:*:*:*:*:* | |
| Metrics |
cvssV3_1
|
Fri, 05 Sep 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 05 Sep 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Weblate
Weblate weblate |
|
| Vendors & Products |
Weblate
Weblate weblate |
Thu, 04 Sep 2025 23:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Weblate is a web based localization tool. Versions lower than 5.13.1 contain a vulnerability that causes long session expiry during the second factor verification. The long session expiry could be used to circumvent rate limiting of the second factor. This issue is fixed in version 5.13.1. | |
| Title | Weblate has long session expiry times during second factor verification | |
| Weaknesses | CWE-613 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2025-09-05T15:18:03.858Z
Reserved: 2025-08-29T16:19:59.009Z
Link: CVE-2025-58352
Updated: 2025-09-05T15:17:57.284Z
Status : Analyzed
Published: 2025-09-05T00:15:32.280
Modified: 2025-09-18T16:25:36.483
Link: CVE-2025-58352
No data.
OpenCVE Enrichment
Updated: 2025-09-05T14:01:50Z
Github GHSA