View | Details | Raw Unified | Return to bug 241599 | Differences between
and this patch

Collapse All | Expand All

(-)vuln.xml (+28 lines)
Lines 58-63 Link Here
58
  * Do not forget port variants (linux-f10-libxml2, libxml2, etc.)
58
  * Do not forget port variants (linux-f10-libxml2, libxml2, etc.)
59
-->
59
-->
60
<vuxml xmlns="http://www.vuxml.org/apps/vuxml-1">
60
<vuxml xmlns="http://www.vuxml.org/apps/vuxml-1">
61
  <vuln vid="fd10aa77-fb5e-11e9-af7b-0800274e5f20">
62
    <topic>gitea -- information disclosure</topic>
63
    <affects>
64
      <package>
65
	<name>gitea</name>
66
	<range><lt>1.9.5</lt></range>
67
      </package>
68
    </affects>
69
    <description>
70
      <body xmlns="http://www.w3.org/1999/xhtml">
71
	<p>The Gitea Team reports:</p>
72
	<blockquote cite="https://github.com/go-gitea/gitea/issues/8303">
73
	  <p>When a comment in an issue or PR mentions a user using
74
	  @username, the mentioned user receives a mail notification even if
75
	  they don't have permission to see the originating repository.</p>
76
	</blockquote>
77
      </body>
78
    </description>
79
    <references>
80
      <url>https://github.com/go-gitea/gitea/releases/tag/v1.9.5</url>
81
      <url>https://blog.gitea.io/2019/10/gitea-1.9.5-is-released//</url>
82
    </references>
83
    <dates>
84
      <discovery>2019-09-27</discovery>
85
      <entry>2019-10-30</entry>
86
    </dates>
87
  </vuln>
88
61
  <vuln vid="6eddfa51-fb44-11e9-86e9-001b217b3468">
89
  <vuln vid="6eddfa51-fb44-11e9-86e9-001b217b3468">
62
    <topic>Gitlab -- Disclosure Vulnerabilities</topic>
90
    <topic>Gitlab -- Disclosure Vulnerabilities</topic>
63
    <affects>
91
    <affects>

Return to bug 241599