CVE-2025-66423: Tryton Trytond

High severity, CVSS 7.1. EPSS: 0.2% chance of exploitation in the next 30 days.

Tryton trytond 6.0 before 7.6.11 does not enforce access rights for the route of the HTML editor. This is fixed in 7.6.11, 7.4.21, 7.0.40, and 6.0.70.

Affected products

  • Tryton Trytond: from 6.0.0, before 6.0.70 (fixed in 6.0.70); from 7.0.0, before 7.0.40 (fixed in 7.0.40); from 7.4.0, before 7.4.21 (fixed in 7.4.21); from 7.6.0, before 7.6.11 (fixed in 7.6.11)

Published 2025-11-30. Last modified 2026-10-07.