CVE-2026-19851CWE-1393

CVE-2026-19851

High · published August 25, 2026

CVSS v3.1
7.7
EPSS
0%
Percentile
10.4
In the wild
Unconfirmed
What it is

A Use of Default Password vulnerability affecting Tuleap Enterprise Edition from 17.0 through 17.5 could allow an attacker to gain access to user accounts created during XML import.

The record
Technical detail
CVSS v3.1
7.7 · HIGH
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:L
CVSS v4.0
Not supplied
EPSS
0.00204 · 10.4th percentile
Weakness
CWE-1393 · Use of Default Password
Published
2026-08-25T12:18Z
References (1)
EPSS history
Timeline
  • 26 AUG 07:37Z
    EPSS moved — → 0%
    epss
  • 25 AUG 07:47Z
    Use of Default Password vulnerability affecting Tuleap Enterprise Edition from 17.0 through 17.5
    cvelistv5