QID 982043
QID 982043: Go (go) Security Update for gogs.io/gogs (GHSA-mr6h-chqp-p9g2)
SQL injection vulnerability in the GetIssues function in models/issue.go in Gogs (aka Go Git Service) 0.3.1-9 through 0.5.6.x before 0.5.6.1025 Beta allows remote attackers to execute arbitrary SQL commands via the label parameter to user/repos/issues.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-mr6h-chqp-p9g2 for updates pertaining to this vulnerability.
Vendor References
- GHSA-mr6h-chqp-p9g2 -
github.com/advisories/GHSA-mr6h-chqp-p9g2
CVEs related to QID 982043
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-mr6h-chqp-p9g2 | gogs.io/gogs |
|