code.gitea.io/gitea Open Redirect vulnerability
Low severity
GitHub Reviewed
Published
Jul 5, 2023
to the GitHub Advisory Database
•
Updated Dec 29, 2023
Description
Published by the National Vulnerability Database
Jul 5, 2023
Published to the GitHub Advisory Database
Jul 5, 2023
Reviewed
Jul 6, 2023
Last updated
Dec 29, 2023
Open Redirect in GitHub repository go-gitea/gitea prior to 1.19.4. This is most likely a post-auth redirect plus it is a POST based request scenario, so less likely that can be exploited or chained with other bugs that can cause phishing or credential theft.
References