blob: f8b5cd7a9adcea9517a2ab5751b03a990dc3dc7b [file] [log] [blame]
id: GO-2024-2971
modules:
- module: github.com/gogs/gogs
unsupported_versions:
- last_affected: 0.13.0
vulnerable_at: 0.13.0
summary: Gogs allows argument injection during the previewing of changes in github.com/gogs/gogs
cves:
- CVE-2024-39932
ghsas:
- GHSA-hf29-9hfh-w63j
references:
- advisory: https://github.com/advisories/GHSA-hf29-9hfh-w63j
- advisory: https://nvd.nist.gov/vuln/detail/CVE-2024-39932
- web: https://github.com/gogs/gogs/releases
- web: https://www.sonarsource.com/blog/securing-developer-tools-unpatched-code-vulnerabilities-in-gogs-1
source:
id: GHSA-hf29-9hfh-w63j
created: 2024-07-08T13:24:05.043922-04:00
review_status: UNREVIEWED