blob: d2fdf00df72a4e1533037660a94e27a4101e02cf [file] [log] [blame]
module: github.com/gogits/gogs
versions:
- fixed: v0.5.8
description: |
Multiple methods are vulnerable to SQL injection attacks as unsanitized
user input is used to construct SQL statements.
published: 2021-04-14T12:00:00Z
cve: CVE-2014-8681
credit: Pascal Turbing and Jiahua (Joe) Chen
symbols:
- GetIssues
- SearchRepositoryByName
- SearchUserByName
links:
commit: https://github.com/gogs/gogs/commit/83283bca4cb4e0f4ec48a28af680f0d88db3d2c8
context:
- https://seclists.org/fulldisclosure/2014/Nov/31