CVE-2025-68398: Weblate is vulnerable to RCE through Git config file overwrite
Severity: Critical
CVSS Score: 9.1
Weblate is a web based localization tool. In versions prior to 5.15.1, it was possible to overwrite Git configuration remotely and override some of its behavior. Version 5.15.1 fixes the issue.