Unauthorized Access Vulnerability in Tuleap Open Source Suite
CVE-2025-24029
5.3MEDIUM
What is CVE-2025-24029?
Tuleap Open Source Suite has a vulnerability allowing unauthorized users, including potentially anonymous individuals on public project dashboards, to access sensitive artifacts. This issue has been resolved in Tuleap Community Edition 16.3.99.1737562605 and Tuleap Enterprise Editions 16.3-5 and 16.2-7. Users are strongly encouraged to upgrade to these versions to mitigate the risk of exposure. No workarounds are currently available.
Affected Version(s)
tuleap < 16.3.99.1737562605