CVE-2026-84285: Dassault Systèmes Tuleap Enterprise Edition
High severity, CVSS 8.8. EPSS: 1.8% chance of exploitation in the next 30 days.
An OS Command Injection vulnerability affecting Tuleap Enterprise Edition from 17.3 through 17.5 could allow an attacker to execute arbitrary commands on the server.
Affected products
- Dassault Systèmes Tuleap Enterprise Edition: from 17.3-1, up to and including 17.3-12; from 17.5-1, up to and including 17.5-28
Published 2026-09-21. Last modified 2026-09-21.