Markup Handling Vulnerability in Redmine Product by Redmine
CVE-2019-25026

5.3MEDIUM

Key Information:

Vendor

Redmine

Status
Vendor
CVE Published:
6 April 2021

What is CVE-2019-25026?

A vulnerability exists in Redmine that affects how the application processes markup data during Textile formatting. This flaw can lead to improper rendering of content, potentially exposing sensitive information or enabling an attacker to manipulate data integrity. Users of affected Redmine versions should apply security updates to mitigate any risks associated with this vulnerability.

References

CVSS V3.1

Score:
5.3
Severity:
MEDIUM
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.