Identifier
|
Related Record |
Severity
|
Date Published
|
Description | Versions Affected |
---|---|---|---|---|---|
BDSA-2022-3866 | High | Jan 31, 2023 | Gogs is vulnerable to account takeover attacks due to a lack of validation of user-supplied input. This validation flaw allows for a stored cross-site more... | ||
BDSA-2022-2764 | Medium | Oct 18, 2022 | Gogs is vulnerable to cross-site scripting (XSS) due to the GitHub repository lacking a content-security policy. This would allow the attacker to execu more... |