go-gitea Vulnerabilities and Affected Products
Explore source-attributed vulnerabilities associated with go-gitea products.
Products
- go-gitea/gitea4 vulnerabilities
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2023-3515MEDIUM | Open Redirect in go-gitea/giteaOpen Redirect in GitHub repository go-gitea/gitea prior to 1.19.4. CWE-601Jul 5, 2023 | CVSS4.4v3.1 | EPSS0.485% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2022-1928MEDIUM | Cross-site Scripting (XSS) - Stored in go-gitea/giteaCross-site Scripting (XSS) - Stored in GitHub repository go-gitea/gitea prior to 1.16.9. CWE-79May 29, 2022 | CVSS5.4v3.1 | EPSS0.768% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2022-1058MEDIUM | Open Redirect on login in go-gitea/giteaOpen Redirect on login in GitHub repository go-gitea/gitea prior to 1.16.5. | CVSS6.1v3.1 | EPSS53.2% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware use1 Nuclei template | STIX |
CVE-2022-0905HIGH | Missing Authorization in go-gitea/giteaMissing Authorization in GitHub repository go-gitea/gitea prior to 1.16.4. CWE-862Mar 10, 2022 | CVSS7.1v3.1 | EPSS0.847% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |