From 88c2e68f3ce98826580feae717c17ef62b876a86 Mon Sep 17 00:00:00 2001 From: Florian Smeets Date: Sun, 9 Sep 2018 17:46:23 +0000 Subject: [PATCH] Document gitea vulnerability. PR: 231180 Submitted by: stb@lassitu.de Security: 7c750960-b129-11e8-9fcd-080027f43a02 --- security/vuxml/vuln.xml | 27 +++++++++++++++++++++++++++ 1 file changed, 27 insertions(+) diff --git a/security/vuxml/vuln.xml b/security/vuxml/vuln.xml index a47ce7b2f5b7..b3bfd373edb4 100644 --- a/security/vuxml/vuln.xml +++ b/security/vuxml/vuln.xml @@ -58,6 +58,33 @@ Notes: * Do not forget port variants (linux-f10-libxml2, libxml2, etc.) --> + + Information disclosure - Gitea leaks email addresses + + + gitea + 1.5.1 + + + + +

The Gitea project reports:

+
+

[Privacy] Gitea leaks hidden email addresses #4417

+

A fix has been implemented in Gitea 1.5.1.

+
+ +
+ + https://github.com/go-gitea/gitea/issues/4417 + https://github.com/go-gitea/gitea/pull/4784 + + + 2018-07-10 + 2018-09-05 + +
+ links -- denial of service