6.5
/ 10
MEDIUM
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Description
Tryton trytond 6.0 before 7.6.11 does not enforce access rights for data export. This is fixed in 7.6.11, 7.4.21, 7.0.40, and 6.0.70.
Basic Information
ID
CVE-2025-66424
Source
mitre
Published
Nov 30, 2025 at 00:00
Modified
Nov 30, 2025 at 02:39
Affected Product
Vendor
Tryton
Product
trytond
Version
6.0.0
Affected Versions
Tryton trytond 6.0.0
Tryton trytond 7.0.0
Tryton trytond 7.1.0
Tryton trytond 7.5.0
Tryton trytond 7.0.0
Tryton trytond 7.1.0
Tryton trytond 7.5.0