Описание
Gitea may send release notification emails for private repositories to users whose access has been revoked. When a repository is changed from public to private, users who previously watched the repository may continue to receive release notifications, potentially disclosing release titles, tags, and content.
Ссылки
- Release Notes
- Issue TrackingPatch
- Release Notes
- Broken Link
Уязвимые конфигурации
EPSS
3.5 Low
CVSS3
Дефекты
Связанные уязвимости
Gitea may send release notification emails for private repositories to users whose access has been revoked. When a repository is changed from public to private, users who previously watched the repository may continue to receive release notifications, potentially disclosing release titles, tags, and content.
Gitea may send release notification emails for private repositories to ...
Gitea may send release notification emails for private repositories to users whose access has been revoked
EPSS
3.5 Low
CVSS3