Tuleap is a Free & Open Source Suite to improve management of software developments and collaboration. In affected versions an attacker with read access to a "SVN core" repository could execute arbitrary SQL queries. The following versions contain the fix: Tuleap Community Edition 11.17.99.144, Tuleap Enterprise Edition 11.17-5, Tuleap Enterprise Edition 11.16-7.
[
{
"events": [
{
"introduced": "0"
},
{
"fixed": "11.17.99.144"
}
]
},
{
"events": [
{
"introduced": "11.16-1"
},
{
"fixed": "11.16-7"
}
]
},
{
"events": [
{
"introduced": "11.17-1"
},
{
"fixed": "11.17-5"
}
]
}
]
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2021-41154.json"