🔐 CVE Alert

CVE-2026-19851

HIGH 7.7

Use of Default Password vulnerability affecting Tuleap Enterprise Edition from 17.0 through 17.5

CVSS Score
7.7
EPSS Score
0.0%
EPSS Percentile
0th

A Use of Default Password vulnerability affecting Tuleap Enterprise Edition from 17.0 through 17.5 could allow an attacker to gain access to user accounts created during XML import.

CWE CWE-1393
Vendor dassault systèmes
Product tuleap enterprise edition
Published Aug 25, 2026
Stay Ahead of the Next One

Get instant alerts for dassault systèmes tuleap enterprise edition

Be the first to know when new high vulnerabilities affecting dassault systèmes tuleap enterprise edition are published — delivered to Slack, Telegram or Discord.

Get Free Alerts → Free · No credit card · 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:L
Attack Vector
Network
Attack Complexity
High
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
Low

Affected Versions

Dassault Systèmes / Tuleap Enterprise Edition
17.0-1 ≤ 17.0-36 17.5-1 ≤ 17.5-24

References

NVD ↗ CVE.org ↗ EPSS Data ↗
3ds.com: https://www.3ds.com/trust-center/security/security-advisories/cve-2026-19851