Описание
In Gitea before 1.20.1, a forbidden URL scheme such as javascript: can be used for a link, aka XSS.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| gitea | removed | package |
Связанные уязвимости
CVSS3: 5.4
ubuntu
21 день назад
In Gitea before 1.20.1, a forbidden URL scheme such as javascript: can be used for a link, aka XSS.
CVSS3: 5.4
nvd
21 день назад
In Gitea before 1.20.1, a forbidden URL scheme such as javascript: can be used for a link, aka XSS.