CVE-2026-19851EPSS p9.4%

CVE-2026-19851CVE-2026-19851

Description

A Use of Default Password vulnerability affecting Tuleap Enterprise Edition from 17.0 through 17.5 could allow an attacker to gain access to user accounts created during XML import.

Scoring

CVSS 7.7 ()
VectorCVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:L
EPSS0.20% probability of exploitation · percentile 9.4% · 2026-10-05T12:00:23Z
Last modified2026-08-28
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.