CERT-FR Advises on Redmine Security Vulnerabilities

The French Computer Emergency Response Team (CERT-FR) has issued an advisory regarding multiple security vulnerabilities in Redmine, a project management tool. Affected versions include Redmine 6.1.x prior to 6.1.4, 7.x prior to 7.0.1, and versions before 6.0.11. The vulnerabilities allow attackers to execute cross-site scripting (XSS) attacks and bypass security policies. CERT-FR recommends users consult the official Redmine security bulletin for patches. The advisory, dated August 26, 2026, highlights the risks and provides guidance on mitigating the vulnerabilities through software updates.

Summary of content from

source

Made by AI. If you spot anything of concern write us at contact@cybach.com. We’ll promptly correct irregularities.


Posted