1
0
mirror of https://git.FreeBSD.org/ports.git synced 2025-01-22 08:58:47 +00:00

security/vuxml: Document Gitea < 1.7.1 vulnerabilities

PR:		235399
Submitted by:	stb@lassitu.de (www/gitea maintainer)
This commit is contained in:
Joseph Mingrone 2019-02-02 01:26:48 +00:00
parent a0172f6c1d
commit 8e159eb031
Notes: svn2git 2021-03-31 03:12:20 +00:00
svn path=/head/; revision=491910

View File

@ -58,6 +58,33 @@ Notes:
* Do not forget port variants (linux-f10-libxml2, libxml2, etc.)
-->
<vuxml xmlns="http://www.vuxml.org/apps/vuxml-1">
<vuln vid="41c1cd6f-2645-11e9-b5f1-080027fee39c">
<topic>gitea -- multiple vulnerabilities</topic>
<affects>
<package>
<name>gitea</name>
<range><lt>1.7.1</lt></range>
</package>
</affects>
<description>
<body xmlns="http://www.w3.org/1999/xhtml">
<p>Gitea Team reports:</p>
<blockquote cite="https://github.com/go-gitea/gitea/releases/tag/v1.7.0">
<p>Disable redirect for i18n</p>
<p>Only allow local login if password is non-empty</p>
<p>Fix go-get URL generation</p>
</blockquote>
</body>
</description>
<references>
<url>https://github.com/go-gitea/gitea/releases/tag/v1.7.1</url>
</references>
<dates>
<discovery>2019-01-31</discovery>
<entry>2019-02-01</entry>
</dates>
</vuln>
<vuln vid="22b90fe6-258e-11e9-9c8d-6805ca0b3d42">
<topic>p5-Email-Address-List -- DDoS related vulnerability</topic>
<affects>