A vulnerability was found in Enalean Tuleap Community Edition and Tuleap Enterprise Edition (unknown version) and classified as critical. This issue affects an unknown code of the component CVS Repository Handler. Applying the patch b82be896b00a787ed46a77bd4700e8fccfe2e5ba is able to eliminate this problem. The bugfix is ready for download at github.com.
Enalean Tuleap Community Edition/Tuleap Enterprise Edition CVS Repository sql injection
- Virtual Patching
- December 16, 2021
- 8:11 am
CVE-2024-26922 : LINUX KERNEL UP TO 6.9-RC4 AMDGPU PRIVILEGE ESCALATION
Description In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: validate the parameters of bo mapping operations more
CVE-2024-21511 : MYSQL2 UP TO 3.9.6 READCODEFOR TIMEZONE CODE INJECTION
Description Versions of the package mysql2 before 3.9.7 are vulnerable to Arbitrary Code Injection due to improper sanitization of the
CVE-2024-29733 : APACHE AIRFLOW UP TO 3.6.X FTP PROVIDER CERTIFICATE VALIDATION
Description Improper Certificate Validation vulnerability in Apache Airflow FTP Provider. The FTP hook lacks complete certificate validation in FTP_TLS connections,