Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-ph3w-2843-72mx: Stored Cross-site Scripting in gitea

Cross-site Scripting (XSS) - Stored in GitHub repository go-gitea/gitea prior to 1.16.9 via unfiltered pdfs

ghsa
#xss#git#pdf

Stored Cross-site Scripting in gitea

Moderate severity GitHub Reviewed Published May 30, 2022 • Updated Jun 2, 2022

Related news

CVE-2022-1928: Fix raw endpoint PDF file headers (#19825) · go-gitea/gitea@65e0688

Cross-site Scripting (XSS) - Stored in GitHub repository go-gitea/gitea prior to 1.16.9.