VYPR

Tine

by Tine Groupware

Source repositories

CVEs (1)

  • CVE-2024-36070HigMay 19, 2024
    risk 0.42cvss 7.5epss 0.01

    tine before 2023.11.8, when an LDAP backend is used, allows anonymous remote attackers to obtain sensitive authentication information via setup.php because of getRegistryData in Setup/Frontend/Json.php. (An update is also available for the 2022.11 series.)