CVE-2021-31863
Summary
| CVE | CVE-2021-31863 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-04-28 07:15:00 UTC |
| Updated | 2021-06-01 13:27:00 UTC |
| Description | Insufficient input validation in the Git repository integration of Redmine before 4.0.9, 4.1.x before 4.1.3, and 4.2.x before 4.2.1 allows Redmine users to read arbitrary local files accessible by the application server process. |
NVD Known Affected Configurations (CPE 2.3)
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 178591 Debian Security Update for redmine (DLA 2658-1)
- 182003 Debian Security Update for redmine (CVE-2021-31863)