CVE-2021-45326
08.02.2022, 15:15
Cross Site Request Forgery (CSRF) vulnerability exists in Gitea before 1.5.2 via API routes.This can be dangerous especially with state altering POST requests.
| Vendor | Product | Version |
|---|---|---|
| gitea | gitea | 𝑥 < 1.5.2 |
𝑥
= Vulnerable software versions
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| golang-code.gitea-git |
| ||||||||||||||||||||
| golang-code.gitea-sdk |
|
Common Weakness Enumeration