{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-05-11T21:36:06.970","vulnerabilities":[{"cve":{"id":"CVE-2025-53902","sourceIdentifier":"security-advisories@github.com","published":"2025-07-29T20:15:28.673","lastModified":"2025-08-22T15:30:09.243","vulnStatus":"Analyzed","cveTags":[],"descriptions":[{"lang":"en","value":"Tuleap is an Open Source Suite created to facilitate management of software development and collaboration. In Tuleap Community Edition prior to version 16.9.99.1752585665 and Tuleap Enterprise Edition prior to 16.8-6 and 16.9-5, users may potentially access confidential information from artifacts that they are not authorized to view. This is fixed in Tuleap Community Edition prior to version 16.9.99.1752585665 and Tuleap Enterprise Edition prior to 16.8-6 and 16.9-5."},{"lang":"es","value":"Tuleap es una suite de código abierto creada para facilitar la gestión del desarrollo de software y la colaboración. En Tuleap Community Edition anterior a la versión 16.9.99.1752585665 y Tuleap Enterprise Edition anterior a la 16.8-6 y 16.9-5, los usuarios podrían acceder a información confidencial de artefactos a los que no están autorizados a acceder. Esto se ha corregido en Tuleap Community Edition anterior a la versión 16.9.99.1752585665 y Tuleap Enterprise Edition anterior a la 16.8-6 y 16.9-5."}],"metrics":{"cvssMetricV31":[{"source":"security-advisories@github.com","type":"Secondary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N","baseScore":4.3,"baseSeverity":"MEDIUM","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"LOW","integrityImpact":"NONE","availabilityImpact":"NONE"},"exploitabilityScore":2.8,"impactScore":1.4}]},"weaknesses":[{"source":"security-advisories@github.com","type":"Secondary","description":[{"lang":"en","value":"CWE-863"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:enalean:tuleap:*:*:*:*:enterprise:*:*:*","versionEndExcluding":"16.8-6","matchCriteriaId":"DEC35025-2E64-412A-A4CF-64F2D4FB51CD"},{"vulnerable":true,"criteria":"cpe:2.3:a:enalean:tuleap:*:*:*:*:community:*:*:*","versionEndExcluding":"16.9.99.1752585665","matchCriteriaId":"5B652FD8-9D66-402B-9EC0-4A3509B44322"},{"vulnerable":true,"criteria":"cpe:2.3:a:enalean:tuleap:*:*:*:*:enterprise:*:*:*","versionStartIncluding":"16.9","versionEndExcluding":"16.9-5","matchCriteriaId":"ED55BA98-E49B-4E6F-AF9F-2AC22C60D0BD"}]}]}],"references":[{"url":"https://github.com/Enalean/tuleap/commit/ebe054df8a2672afee41af84e5ba14b57ef8b789","source":"security-advisories@github.com","tags":["Patch"]},{"url":"https://github.com/Enalean/tuleap/security/advisories/GHSA-6f24-5v47-rj6j","source":"security-advisories@github.com","tags":["Third Party Advisory"]},{"url":"https://tuleap.net/plugins/git/tuleap/tuleap/stable?a=commit&h=ebe054df8a2672afee41af84e5ba14b57ef8b789","source":"security-advisories@github.com","tags":["Permissions Required"]},{"url":"https://tuleap.net/plugins/tracker/?aid=43704","source":"security-advisories@github.com","tags":["Exploit","Vendor Advisory"]}]}}]}