CVE-2023-3515Open Redirect in Gitea

CWE-601Open Redirect4 documents3 sources
Severity
4.4MEDIUMNVD
EPSS
0.1%
top 72.48%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJul 5
Latest updateAug 20

Description

Open Redirect in GitHub repository go-gitea/gitea prior to 1.19.4.

CVSS vector

CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:C/C:L/I:L/A:NExploitability: 1.3 | Impact: 2.7

Affected Packages3 packages

NVDgitea/gitea< 1.19.4
Gocode.gitea.io/gitea< 1.19.4
CVEListV5go-gitea/go-gitea_giteaunspecified1.19.4

Patches

🔴Vulnerability Details

3
OSV
code.gitea.io/gitea Open Redirect vulnerability2024-08-20
OSV
code.gitea.io/gitea Open Redirect vulnerability2023-07-05
GHSA
code.gitea.io/gitea Open Redirect vulnerability2023-07-05