Weblate is a web based localization tool. In versions prior to 5.15.1, it was possible to overwrite Git configuration remotely and override some of its behavior. Version 5.15.1 fixes the issue.
Metrics
Affected Vendors & Products
References
History
Sat, 20 Dec 2025 12:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 19 Dec 2025 09:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Weblate
Weblate weblate |
|
| Vendors & Products |
Weblate
Weblate weblate |
Thu, 18 Dec 2025 23:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Weblate is a web based localization tool. In versions prior to 5.15.1, it was possible to overwrite Git configuration remotely and override some of its behavior. Version 5.15.1 fixes the issue. | |
| Title | Weblate has git config file overwrite vulnerability that leads to remote code execution | |
| Weaknesses | CWE-20 CWE-22 CWE-434 |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: GitHub_M
Published: 2025-12-18T23:00:57.790Z
Updated: 2025-12-19T14:58:44.227Z
Reserved: 2025-12-16T21:59:48.534Z
Link: CVE-2025-68398
Updated: 2025-12-19T14:58:35.479Z
Status : Awaiting Analysis
Published: 2025-12-18T23:15:49.720
Modified: 2025-12-19T18:00:18.330
Link: CVE-2025-68398
No data.