CNNVD-202511-3074 Information

CNNVD ID

CNNVD-202511-3074

CVE-2025-66423

  • CNNVD Published: 2025-11-30

Description (Chinese)

Tryton trytond是Tryton开源的一个核心应用服务器。 Tryton trytond 6.0版本至7.6.11之前版本存在安全漏洞,该漏洞源于未强制执行HTML编辑器路由的访问权限。

Description (English)

Tryton Trytond is a core application server for the Tryton Open Source. There is a security loophole in Tryton, version 6.0 to previous version 7.6.11, which results from the failure to enforce access to the HTML editor route.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

tryton

Published

2025-11-30

Last Modified

2026-02-24

References

https://foss.heptapod.net/tryton/tryton/-/issues/14364 https://discuss.tryton.org/t/security-release-for-issue-14364/8952 https://access.redhat.com/security/cve/cve-2025-66423

Patch

https://www.tryton.org/download

Share on: