关键漏洞信息 漏洞标题 Missing CSRF protection in the Overview inconsistent items 漏洞ID GHSA-7g48-rwqj-ffxw CVE-2026-24007 影响版本 Tuleap Community Edition: < 17.0.99.1768924735 Tuleap Enterprise Edition: - < 17.0-9 - < 17.2-5 - < 17.1-6 修复版本 Tuleap Community Edition: 17.0.99.1768924735 Tuleap Enterprise Edition: - 17.0-9 - 17.2-5 - 17.1-6 漏洞严重性 CVSS score: 4.6/10 Severity: Moderate 漏洞描述 An attacker could use this vulnerability to trick victims into repairing inconsistent items (creating artifact links from the release). 弱点类型 CWE-352: Cross-Site Request Forgery (CSRF) 参考链接 request #46389 Missing CSRF protection in the Overview inconsistent items 相关提交