Cross-site request forgery In github.com/go-gitea/gitea
Description
Cross Site Request Forgery in Gitea Cross Site Request Forgery (CSRF) vulnerability exists in Gitea before 1.5.2 via API routes.This can be dangerous especially with state altering POST requests.
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Package | Affected version | Patched versions |
|---|---|---|---|
go | 1.5.2 |
Aliases
1. 2. 3. 4.
References
1. 2. 3.