Описание
Gitea allows attackers to add attachments with forbidden file extensions
Gitea before 1.23.0 allows attackers to add attachments with forbidden file extensions by editing an attachment name via an attachment API.
Пакеты
Наименование
code.gitea.io/gitea
go
Затронутые версииВерсия исправления
Отсутствует
Связанные уязвимости
CVSS3: 8.2
ubuntu
21 день назад
Gitea before 1.23.0 allows attackers to add attachments with forbidden file extensions by editing an attachment name via an attachment API.
CVSS3: 8.2
nvd
21 день назад
Gitea before 1.23.0 allows attackers to add attachments with forbidden file extensions by editing an attachment name via an attachment API.
CVSS3: 8.2
debian
21 день назад
Gitea before 1.23.0 allows attackers to add attachments with forbidden ...