Auto Generated CVE annotations [Sat Mar 18 05:17:17 UTC 2023] 🤖

patch-1
GitHub Action 2023-03-18 05:17:17 +00:00
parent 8333d0281f
commit fd7414bf5b
1 changed files with 3 additions and 2 deletions

View File

@ -6,10 +6,11 @@ info:
severity: medium
description: |
Server-Side Request Forgery (SSRF) in GitHub repository gogs/gogs prior to 0.12.5.
remediation: Fixed in version 0.12.5
reference:
- https://github.com/gogs/gogs/commit/91f2cde5e95f146bfe4765e837e7282df6c7cabb
- https://nvd.nist.gov/vuln/detail/CVE-2022-0870
- https://huntr.dev/bounties/327797d7-ae41-498f-9bff-cc0bf98cf531
remediation: Fixed in version 0.12.5
classification:
cvss-metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
cvss-score: 5.3