CVE-2021-45327
CRITICAL9.8EPSS 2.3%Capture-replay in Gitea in code.gitea.io/gitea
Published: 2/9/2022Modified: 3/3/2026
Description
Capture-replay in Gitea in code.gitea.io/gitea
Affected packages (3)
- Bitnami/giteafrom 0, < 1.11.2
- Go/code.gitea.io/giteafrom 0, < 1.11.2
- Go/github.com/go-gitea/giteafrom 0, < 1.11.2
CVSS scores
| Source | Version | Severity | Vector |
|---|---|---|---|
| osv | CVSS 3.1 | CRITICAL9.8 | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
References (11)
- ADVISORYhttps://github.com/advisories/GHSA-jrpg-35hw-m4p9
- ADVISORYhttps://nvd.nist.gov/vuln/detail/CVE-2021-45327
- PATCHhttps://github.com/go-gitea/gitea
- WEBhttps://blog.gitea.io/2020/03/gitea-1.11.2-is-released
- WEBhttps://blog.gitea.io/2020/03/gitea-1.11.2-is-released/
- WEBhttps://github.com/go-gitea/gitea/commit/4cb18601ff33dda5edb47d5b452cc8f2dc39dd67
- WEBhttps://github.com/go-gitea/gitea/commit/6f5656ab0ebec03fe63898208dabc802c4be46ab
- WEBhttps://github.com/go-gitea/gitea/commit/ed664a9e1dae4d4660e60c981173bbc5102e69ea
- WEBhttps://github.com/go-gitea/gitea/pull/10462
- WEBhttps://github.com/go-gitea/gitea/pull/10465
- WEBhttps://github.com/go-gitea/gitea/pull/10582