VYPR
Medium severity5.3NVD Advisory· Published Feb 6, 2024· Updated Jun 17, 2026

CVE-2024-23344

CVE-2024-23344

Description

Tuleap is an Open Source Suite to improve management of software developments and collaboration. Some users might get access to restricted information when a process validates the permissions of multiple users (e.g. mail notifications). This issue has been patched in version 15.4.99.140 of Tuleap Community Edition.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

5
  • Enalean/Tuleap4 versions
    cpe:2.3:a:enalean:tuleap:*:*:*:*:community:*:*:*+ 3 more
    • cpe:2.3:a:enalean:tuleap:*:*:*:*:community:*:*:*range: >=15.2.99.49,<15.4.99.140
    • cpe:2.3:a:enalean:tuleap:*:*:*:*:enterprise:*:*:*range: <15.3.5
    • (no CPE)range: before 15.4.99.140
    • (no CPE)range: < 15.4.99.140
  • Range: before 15.4.99.140

Patches

Vulnerability mechanics

References

4

News mentions

0

No linked articles in our index yet.