ZeroHour

CVE-2025-66423

PoC
CVSS 3.1
7.1 high
EPSS
<1%p13
Published
()
Modified
Description

Tryton trytond 6.0 before 7.6.11 does not enforce access rights for the route of the HTML editor. This is fixed in 7.6.11, 7.4.21, 7.0.40, and 6.0.70.

Vendors
tryton
Products
trytond
Weakness
CWE-863
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:N

In the news

No ingested article mentions this CVE yet.