VulnerabilityAnalyzed
CVE-2025-69288
Prior to version 0.99.49, Titra allows any authenticated Admin user to modify the timeEntryRule in the database.
CRITICAL 9.1EPSS 0.83%
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (0.83%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
Titra is open source project time tracking software. Prior to version 0.99.49, Titra allows any authenticated Admin user to modify the timeEntryRule in the database. The value is then passed to a NodeVM value to execute as code. Without sanitization, it leads to a Remote Code Execution. Version 0.99.49 fixes the issue.
- CVSS 3.1
- 9.1 CRITICALCVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
- EPSS
- 0.83% probability · 56th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-20
- Affected
- kromit/titra
- Source
- security-advisories@github.com
References
- https://github.com/kromitgmbh/titra/commit/2e2ac5cbeed47a76720b21c7fde0214a242e065ePatch
- https://github.com/kromitgmbh/titra/releases/tag/0.99.49Release Notes
- https://github.com/kromitgmbh/titra/security/advisories/GHSA-pqgx-6wg3-gmvrExploit, Mitigation, Vendor Advisory
- https://github.com/kromitgmbh/titra/security/advisories/GHSA-pqgx-6wg3-gmvrExploit, Mitigation, Vendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.