# Multiples vulnérabilités dans Redmine (01 octobre 2026)

Publisher-attributed story with a reviewed brief or permitted publisher paragraph. The original publisher is responsible for the linked reporting.

- Publisher: CERT-FR / ANSSI
- Category: Vulnerabilities
- Original publication time: 2026-10-01T00:00:00Z
- First observed by NexusTechWire: 2026-10-01T20:28:40Z
- Original source: https://www.cert.ssi.gouv.fr/avis/CERTFR-2026-AVI-1245/
- NexusTechWire record: https://nexustechwire.com/news/news-db4df7da4ea39717e82f

## The brief

CERT-FR warns that Redmine releases before 6.1.5 in the 6.1 series and before 7.0.2 in the 7 series contain security weaknesses that can expose data or enable cross-site scripting. Its October 1 advisory identifies those two affected branches and directs operators to Redmine's security notices for the corresponding fixes.

AI-assisted NexusTechWire summary, checked against the linked source on 2026-10-01T21:18:05Z. Not independent reporting.

Source license: [Etalab Open Licence v2.0](https://www.etalab.gouv.fr/wp-content/uploads/2017/04/ETALAB-Licence-Ouverte-v2.0.pdf). Source material adapted into an original NexusTechWire brief. Original source license applies. See the attributed original source for its latest revision date. Reuse does not imply publisher endorsement.

Read the full original: [CERT-FR / ANSSI](https://www.cert.ssi.gouv.fr/avis/CERTFR-2026-AVI-1245/)

This record does not reproduce the complete article or represent independent confirmation of every source claim.
