CVE-2020-14144

HIGH7.2EPSS 93.5%

Arbitrary Code Execution in Gitea

Published: 4/22/2024Modified: 4/22/2024
Also known as:GHSA-3h6c-c475-jm7vBIT-gitea-2020-14144

Description

The git hook feature in Gitea 1.1.0 through 1.12.5 allows for authenticated remote code execution.

Affected packages (2)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1HIGH7.2CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

References (15)