Tuleap Community Edition Fixes Issue with Cross Tracker Search Widget
CVE-2024-47766
What is CVE-2024-47766?
Tuleap is a tool for end to end traceability of application and system developments. Prior to Tuleap Community Edition 15.13.99.110, Tuleap Enterprise Edition 15.13-5, and Tuleap Enterprise Edition 15.12-5, administrators of a project can access the content of trackers with permissions restrictions of project they are members of but not admin via the cross tracker search widget. Tuleap Community Edition 15.13.99.110, Tuleap Enterprise Edition 15.13-5, and Tuleap Enterprise Edition 15.12-8 fix this issue.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
tuleap < 15.13.99.110 < 15.13.99.110
tuleap < 15.13-5 < 15.13-5
tuleap < 15.12-8 < 15.12-8
References
CVSS V3.1
Timeline
Vulnerability published
