ZeroHour

CVE-2021-42326

CVSS 3.1
5.3 medium
EPSS
1%p65
Published
()
Modified
Description

Redmine before 4.1.5 and 4.2.x before 4.2.3 may disclose the names of users on activity views due to an insufficient access filter.

Vendors
redminedebian
Products
redmine, debian linux
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.