Insufficient Input Validation in Redmine Git Repository Integration
CVE-2021-31863
7.5HIGH
What is CVE-2021-31863?
A security flaw in Redmine's Git repository integration enables users to exploit insufficient input validation, potentially allowing them to access arbitrary local files on the server where the application is hosted. This vulnerability impacts versions prior to 4.0.9, 4.1.x before 4.1.3, and 4.2.x before 4.2.1, posing a risk to sensitive data.
