CVE-2025-4011
published 2025-04-28CVE-2025-4011: A vulnerability has been found in Redmine 6.0.0/6.0.1/6.0.2/6.0.3 and classified as problematic. This vulnerability affects unknown code of the component…
PriorityP416low3.5CVSS 3.1
AVNACLPRLUIRSUCNILAN
EPSS
0.28%
20.0th percentile
A vulnerability has been found in Redmine 6.0.0/6.0.1/6.0.2/6.0.3 and classified as problematic. This vulnerability affects unknown code of the component Custom Query Handler. The manipulation of the argument Name leads to cross site scripting. The attack can be initiated remotely. Upgrading to version 6.0.4 is able to address this issue. It is recommended to upgrade the affected component.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | redmine | < redmine 6.0.4+ds-1 (sid) | redmine 6.0.4+ds-1 (sid) |
| redmine | redmine | >= 0 < 6.0.4+ds-1 | 6.0.4+ds-1 |
CVSS provenance
nvdv3.13.5LOWCVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N
nvdv4.05.1MEDIUMCVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:P/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
nvdv2.04.0MEDIUMAV:N/AC:L/Au:S/C:N/I:P/A:N
osv5.1MEDIUM
vendor_debian5.1LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Debian
CVE-2025-4011: redmine - A vulnerability has been found in Redmine 6.0.0/6.0.1/6.0.2/6.0.3 and classified...
vendor_debian·2025·CVSS 5.1
CVE-2025-4011 [MEDIUM] CVE-2025-4011: redmine - A vulnerability has been found in Redmine 6.0.0/6.0.1/6.0.2/6.0.3 and classified...
A vulnerability has been found in Redmine 6.0.0/6.0.1/6.0.2/6.0.3 and classified as problematic. This vulnerability affects unknown code of the component Custom Query Handler. The manipulation of the argument Name leads to cross site scripting. The attack can be initiated remotely. Upgrading to version 6.0.4 is able to address this issue. It is recommended to upgrade the affected component.
Scope: local
bookworm: resolved
sid: resolved (fixed in 6.0.4+ds-1)
trixie: resolved (fixed in 6.0.4+ds-1)
GHSA
Mermaid Gantt Charts are vulnerable to an Infinite Loop DoS
ghsa·2026-05-11
CVE-2026-41150 [MEDIUM] CWE-835 Mermaid Gantt Charts are vulnerable to an Infinite Loop DoS
Mermaid Gantt Charts are vulnerable to an Infinite Loop DoS
### Impact
Mermaid v11.14.0 and earlier are vulnerable to a denial-of-service attack when rendering gantt charts, if they use the [`excludes` attribute](https://mermaid.js.org/syntax/gantt.html?#excludes) to exclude all dates.
Example:
```
gantt
excludes monday,tuesday,wednesday,thursday,friday,saturday,sunday
DoS :2025-01-01, 1d
```
`mermaid.parse` is unaffected, unless you then call the `ganttDb.getTasks()` (which is called when rendering a diagram).
### Patches
This has been patched in:
- [v11.15.0](https://github.com/mermaid-js/mermaid/releases/tag/mermaid%4011.15.0) (see [faafb5d49106dd32c367f3882505f2dd625aa30e](https://github.com/mermaid-js/mermaid/commit/faafb5d49106dd32c367f3882505f2dd625aa30e))
- [v10.9.6](https:
GHSA
GHSA-hhw5-9q3f-7w82: A vulnerability has been found in Redmine 6
ghsa_unreviewed·2025-04-28
CVE-2025-4011 [MEDIUM] CWE-79 GHSA-hhw5-9q3f-7w82: A vulnerability has been found in Redmine 6
A vulnerability has been found in Redmine 6.0.0/6.0.1/6.0.2/6.0.3 and classified as problematic. This vulnerability affects unknown code of the component Custom Query Handler. The manipulation of the argument Name leads to cross site scripting. The attack can be initiated remotely. Upgrading to version 6.0.4 is able to address this issue. It is recommended to upgrade the affected component.
OSV
CVE-2025-4011: A vulnerability has been found in Redmine 6
osv·2025-04-28·CVSS 5.1
CVE-2025-4011 [MEDIUM] CVE-2025-4011: A vulnerability has been found in Redmine 6
A vulnerability has been found in Redmine 6.0.0/6.0.1/6.0.2/6.0.3 and classified as problematic. This vulnerability affects unknown code of the component Custom Query Handler. The manipulation of the argument Name leads to cross site scripting. The attack can be initiated remotely. Upgrading to version 6.0.4 is able to address this issue. It is recommended to upgrade the affected component.
Suricata
ET EXPLOIT Broadcom Altiris IRM Unauthenticated Remote Code Execution (CVE-2025-5333)
suricata·2025-07-15·CVSS 9.5
CVE-2025-5333 [CRITICAL] ET EXPLOIT Broadcom Altiris IRM Unauthenticated Remote Code Execution (CVE-2025-5333)
ET EXPLOIT Broadcom Altiris IRM Unauthenticated Remote Code Execution (CVE-2025-5333)
Rule: alert tcp any any -> $HOME_NET 4011 (msg:"ET EXPLOIT Broadcom Altiris IRM Unauthenticated Remote Code Execution (CVE-2025-5333)"; flow:established,to_server; content:"|2e|NET"; startswith; content:"tcp|3a 2f 2f|"; content:"|3a|4011/IRM/HostedService"; fast_pattern; distance:0; reference:url,www.lrqa.com/en/cyber-labs/remote-code-execution-in-broadcom-altiris-irm/; reference:cve,2025-5333; classtype:attempted-user; sid:2063464; rev:1; metadata:attack_target Networking_Equipment, created_at 2025_07_15, cve CVE_2025_5333, deployment Perimeter, confidence High, signature_severity Major, updated_at 2025_07_15, mitre_tactic_id TA0001, mitre_tactic_name Initial_Access, mitre_technique_id T1190, mitre_tech
No public exploits indexed.
No writeups or analysis indexed.
2025-04-28
Published