Vulnerability CVE-2022-1992


Published: 2022-06-09

Description:
Path Traversal in GitHub repository gogs/gogs prior to 0.12.9.

Type:

CWE-22

(Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal'))

CVSS2 => (AV:N/AC:L/Au:N/C:N/I:P/A:P)

CVSS Base Score
Impact Subscore
Exploitability Subscore
6.4/10
4.9/10
10/10
Exploit range
Attack complexity
Authentication
Remote
Low
No required
Confidentiality impact
Integrity impact
Availability impact
None
Partial
Partial

 References:
https://github.com/gogs/gogs/commit/2ca014250fbf0bba94c914d9e43b1f6d8eca3bb0
https://huntr.dev/bounties/2e8cdc57-a9cf-46ae-9088-87f09e6c90ab

Copyright 2026, cxsecurity.com

 

Back to Top