CRITICAL 9.8 Go

Insecure Permissions in Gogs

GHSA-5r2v-6gm6-vpvh · CVE-2019-14544 · GO-2022-0797

Published · Modified

Description

routes/api/v1/api.go in Gogs 0.11.86 lacks permission checks for routes: deploy keys, collaborators, and hooks.

Ready to move

Start Securing

Free, no credit card | First findings in minutes