|
Lines 1-3
Link Here
|
|
|
1 |
<vuln vid="733afd81-01cf-11ec-aec9-0800273f11ea"> |
| 2 |
<topic>gitea -- multiple vulnerabilities</topic> |
| 3 |
<affects> |
| 4 |
<package> |
| 5 |
<name>gitea</name> |
| 6 |
<range><lt>1.14.6</lt></range> |
| 7 |
</package> |
| 8 |
</affects> |
| 9 |
<description> |
| 10 |
<body xmlns="http://www.w3.org/1999/xhtml"> |
| 11 |
<p>The Gitea Team reports for release 1.14.6:</p> |
| 12 |
<blockquote cite="https://blog.gitea.io/2021/08/gitea-1.14.6-is-released/"> |
| 13 |
<ul> |
| 14 |
<li>Bump github.com/markbates/goth from v1.67.1 to v1.68.0 (#16538) (#16540)</li> |
| 15 |
<li>Switch to maintained JWT lib (#16532) (#16535)</li> |
| 16 |
<li>Upgrade to latest version of golang-jwt (as forked for 1.14) (#16590) (#16607)</li> |
| 17 |
</ul> |
| 18 |
</blockquote> |
| 19 |
</body> |
| 20 |
</description> |
| 21 |
<references> |
| 22 |
<url>https://github.com/go-gitea/gitea/releases/tag/v1.14.6</url> |
| 23 |
<freebsdpr>ports/257973</freebsdpr> |
| 24 |
</references> |
| 25 |
<dates> |
| 26 |
<discovery>2021-07-24</discovery> |
| 27 |
<entry>2021-08-20</entry> |
| 28 |
</dates> |
| 29 |
</vuln> |
| 30 |
|
| 1 |
<vuln vid="70e71a24-0151-11ec-bf0c-080027eedc6a"> |
31 |
<vuln vid="70e71a24-0151-11ec-bf0c-080027eedc6a"> |
| 2 |
<topic>bouncycastle15 -- bcrypt password checking vulnerability</topic> |
32 |
<topic>bouncycastle15 -- bcrypt password checking vulnerability</topic> |
| 3 |
<affects> |
33 |
<affects> |