CVE 2.1 LOW

Weblate has long session expiry times during second factor verification_CVE-2025-58352

2.1 / 10
LOW
CVSS:4.0/AV:N/AC:H/AT:P/PR:L/UI:P/VC:L/VI:L/VA:N/SC:N/SI:N/SA:N

Description

Weblate is a web based localization tool. Versions lower than 5.13.1 contain a vulnerability that causes long session expiry during the second factor verification. The long session expiry could be used to circumvent rate limiting of the second factor. This issue is fixed in version 5.13.1.

Basic Information

ID CVE-2025-58352
Source GitHub_M
Published Sep 4, 2025 at 23:28

Affected Product

Vendor WeblateOrg
Product weblate
Version < 5.13.1
Affected Versions WeblateOrg weblate < 5.13.1

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.