blob: 1fdb7f59c1b807fb02628f32dffcbf3df21b87af [file] [log] [blame]
id: GO-2022-0554
modules:
- module: gogs.io/gogs
versions:
- fixed: 0.12.6
vulnerable_at: 0.12.6-rc.1
summary: Unrestricted Upload of File with Dangerous Type in Gogs in gogs.io/gogs
cves:
- CVE-2022-0415
ghsas:
- GHSA-5gjh-5j4f-cpwv
references:
- advisory: https://github.com/gogs/gogs/security/advisories/GHSA-5gjh-5j4f-cpwv
- advisory: https://nvd.nist.gov/vuln/detail/CVE-2022-0415
- web: https://github.com/gogs/gogs/commit/0fef3c9082269e9a4e817274942a5d7c50617284
- web: https://github.com/gogs/gogs/issues/6833
- web: https://github.com/gogs/gogs/pull/6838
- web: https://huntr.dev/bounties/b4928cfe-4110-462f-a180-6d5673797902
source:
id: GHSA-5gjh-5j4f-cpwv
created: 2024-08-20T14:03:54.80236-04:00
review_status: UNREVIEWED
unexcluded: NOT_IMPORTABLE