Vulnerability in Tuleap Community and Enterprise Editions Affecting Software Management
CVE-2025-48991
What is CVE-2025-48991?
An input validation vulnerability in Tuleap allows attackers to exploit the system by tricking users into altering canned responses. This flaw exists in Tuleap Community Edition versions prior to 16.8.99.1748845907 and in Tuleap Enterprise Edition versions prior to 16.8-3 and 16.7-5. The security fix provided in the latest updates addresses this issue, ensuring the integrity and functionality of responses within the software, thereby enhancing overall security during software development and collaboration.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
tuleap < 16.8.99.1748845907 < 16.8.99.1748845907
tuleap < 16.8-3 < 16.8-3
tuleap < 16.7-5 < 16.7-5
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved
