CVE-2026-84285EPSS p77.7%

CVE-2026-84285CVE-2026-84285

Description

An OS Command Injection vulnerability affecting Tuleap Enterprise Edition from 17.3 through 17.5 could allow an attacker to execute arbitrary commands on the server.

Scoring

CVSS 8.8 ()
VectorCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS1.80% probability of exploitation · percentile 77.7% · 2026-10-05T12:00:23Z
Last modified2026-09-21
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.