Weblate
cpe:2.3:a:weblate:weblate:*:*:*:*:*:*:*
- < 5.12
A vulnerability in Weblate prior to version 5.12 allows the full IP address of users to be included in audit log notifications. This information could be intercepted by third-party servers, such as SMTP relays or spam filters.
The vulnerability leads to the unintended exposure of users' IP addresses through email notifications, which could be accessed by third-party servers.
Users can upgrade to Weblate version 5.12 or later to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.