ZeroHour

CVE-2025-68398

CVSS 3.1
9.1 critical
EPSS
<1%p45
Published
()
Modified
Description

Weblate is a web based localization tool. In versions prior to 5.15.1, it was possible to overwrite Git configuration remotely and override some of its behavior. Version 5.15.1 fixes the issue.

Vendors
weblate
Products
weblate
Weakness
CWE-20, CWE-22, CWE-434
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H

In the news

No ingested article mentions this CVE yet.