vulnerability

FreeBSD: VID-be088777-6085-11ea-8609-08002731610e: gitea -- multiple vulnerabilities

Severity
9
CVSS
(AV:N/AC:L/Au:N/C:C/I:C/A:N)
Published
Mar 7, 2020
Added
Mar 8, 2020
Modified
Dec 10, 2025

Description

The Gitea Team reports for release 1.11.0: Never allow an empty password to validate (#9682) (#9683) Prevent redirect to Host (#9678) (#9679) Swagger hide search field (#9554) Add "search" to reserved usernames (#9063) Switch to fomantic-ui (#9374) Only serve attachments when linked to issue/release and if accessible by user (#9340) The Gitea Team reports for release 1.11.2: Ensure only own addresses are updated (#10397) (#10399) Logout POST action (#10582) (#10585) Org action fixes and form cleanup (#10512) (#10514) Change action GETs to POST (#10462) (#10464) Fix admin notices (#10480) (#10483) Change admin dashboard to POST (#10465) (#10466) Update markbates/goth (#10444) (#10445) Update crypto vendors (#10385) (#10398)

Solution

freebsd-upgrade-package-gitea

References

Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.