漏洞描述
Server-Side Request Forgery (SSRF) in GitHub repository gogs/gogs prior to 0.12.5.
影响产品
修复建议
建议关注厂商安全公告,及时升级至已修复版本,并结合实际资产暴露情况采取缓解措施。
参考链接
github.comhttps://github.com/gogs/gogs/commit/91f2cde5e95f146bfe4765e837e7282df6c7cabb↗huntr.devhttps://huntr.dev/bounties/327797d7-ae41-498f-9bff-cc0bf98cf531↗nvd.nist.govhttps://nvd.nist.gov/vuln/detail/CVE-2022-0870↗github.comhttps://github.com/cokeBeer/go-cves↗github.comhttps://github.com/michaellrowley/michaellrowley↗