Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 3

Количество 3

nvd логотип

CVE-2025-46556

10 месяцев назад

Mantis Bug Tracker (MantisBT) is an open source issue tracker. Versions 2.27.1 and below allow attackers to permanently corrupt issue activity logs by submitting extremely long notes (tested with 4,788,761 characters) due to a lack of server-side validation of note length. Once such a note is added, the activity stream UI fails to render; therefore, new notes cannot be displayed, effectively breaking all future collaboration on the issue. This issue is fixed in version 2.27.2.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2025-46556

10 месяцев назад

Mantis Bug Tracker (MantisBT) is an open source issue tracker. Version ...

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-r3jf-hm7q-qfw5

10 месяцев назад

MantisBT Vulnerable to Denial-of-Service (DoS) via Excessive Note Length

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-46556

Mantis Bug Tracker (MantisBT) is an open source issue tracker. Versions 2.27.1 and below allow attackers to permanently corrupt issue activity logs by submitting extremely long notes (tested with 4,788,761 characters) due to a lack of server-side validation of note length. Once such a note is added, the activity stream UI fails to render; therefore, new notes cannot be displayed, effectively breaking all future collaboration on the issue. This issue is fixed in version 2.27.2.

CVSS3: 6.5
0%
Низкий
10 месяцев назад
debian логотип
CVE-2025-46556

Mantis Bug Tracker (MantisBT) is an open source issue tracker. Version ...

CVSS3: 6.5
0%
Низкий
10 месяцев назад
github логотип
GHSA-r3jf-hm7q-qfw5

MantisBT Vulnerable to Denial-of-Service (DoS) via Excessive Note Length

CVSS3: 6.5
0%
Низкий
10 месяцев назад

Уязвимостей на страницу