CVE Vulnerabilities

CVE-2025-66422

Transmission of Private Resources into a New Sphere ('Resource Leak')

Published: Nov 30, 2025 | Modified: Nov 30, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

Tryton trytond before 7.6.11 allows remote attackers to obtain sensitive trace-back (server setup) information. This is fixed in 7.6.11, 7.4.21, 7.0.40, and 6.0.70.

Weakness

The product makes resources available to untrusted parties when those resources are only intended to be accessed by the product.

References