Vulnerability CVE-2024-6886


Published: 2024-08-06

Description:
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Gitea Gitea Open Source Git Server allows Stored XSS.This issue affects Gitea Open Source Git Server: 1.22.0.

See advisories in our WLB2 database:
Topic
Author
Date
Low
Gitea 1.22.0 Stored XSS
Catalin Iovita
06.04.2025

Type:

CWE-79

(Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting'))

 References:
https://github.com/go-gitea/gitea/pull/31200
https://blog.gitea.com/release-of-1.22.1/

Copyright 2025, cxsecurity.com

 

Back to Top