High severity7.5NVD Advisory· Published Nov 3, 2023· Updated Jun 17, 2026
CVE-2023-41260
CVE-2023-41260
Description
Best Practical Request Tracker (RT) before 4.4.7 and 5.x before 5.0.5 allows Information Exposure in responses to mail-gateway REST API calls.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:bestpractical:request_tracker:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:bestpractical:request_tracker:*:*:*:*:*:*:*:*range: <4.4.7
- (no CPE)range: <4.4.7 and <5.0.5
- Best Practical/Request Tracker (RT)description
Patches
Vulnerability mechanics
References
4- docs.bestpractical.com/release-notes/rt/4.4.7nvdRelease NotesVendor Advisory
- docs.bestpractical.com/release-notes/rt/5.0.5nvdRelease NotesVendor Advisory
- docs.bestpractical.com/release-notes/rt/index.htmlnvdRelease NotesVendor Advisory
- lists.debian.org/debian-lts-announce/2023/10/msg00046.htmlnvd
News mentions
0No linked articles in our index yet.