https://github.com/wxiaoguang
14 записей с упоминанием · 14 за 12 месяцев · 0 в CISA KEV
Имена — свободный текст из записей CNA; один человек может встречаться в разных написаниях. Напишите нам для исправления.
Записи с упоминанием
Исследователи| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
17Наблюдать | CVE-2026-96589Эксплойта нет | Gitea private repository access retained after rejected transfergitea · gitea · CWE-672 | Средняя4,3 | — | 0,2 % | 4 дня назад |
32Наблюдать | CVE-2026-96404Эксплойта нет | Gitea installer authentication bypass for existing accountsgitea · gitea · CWE-287 | Высокая8,1 | — | 0,4 % | 4 дня назад |
17Наблюдать | CVE-2026-96400Эксплойта нет | Gitea migration SSRF to reserved addresses through ALLOWED_DOMAINSgitea · gitea · CWE-918 | Средняя4,3 | — | 0,2 % | 4 дня назад |
30Наблюдать | CVE-2026-96399Эксплойта нет | Gitea denial of service through external issue tracker patternsgitea · gitea · CWE-125 | Высокая7,5 | — | 0,4 % | 4 дня назад |
26Наблюдать | CVE-2026-95112Эксплойта нет | Gitea issue reference parsing CPU exhaustiongitea · gitea · CWE-407 | Средняя6,5 | — | 0,3 % | 4 дня назад |
32Наблюдать | CVE-2026-89430Эксплойта нет | Gitea push mirror SSRF and forced writes to internal Git hostsgitea · gitea · CWE-367 | Высокая8,1 | — | 0,2 % | 4 дня назад |
28Наблюдать | CVE-2026-79960Эксплойта нет | Gitea deploy key pushes acting as the repository ownergitea · gitea · CWE-863 | Высокая7,1 | — | 0,2 % | 4 дня назад |
30Наблюдать | CVE-2026-70357Эксплойта нет | Gitea repository migration SSRF through DNS rebindinggitea · gitea · CWE-918 | Высокая7,5 | — | 0,3 % | 4 дня назад |
30Наблюдать | CVE-2026-104636Эксплойта нет | Gitea SSRF through Git HTTP redirects in mirrors and fetchesgitea · gitea · CWE-918 | Высокая7,5 | — | 0,3 % | 4 дня назад |
21Наблюдать | CVE-2026-103667Эксплойта нет | Gitea container registry stored XSS through blob media typegitea · gitea · CWE-79 | Средняя5,4 | — | 0,2 % | 4 дня назад |
32Наблюдать | CVE-2026-103504Эксплойта нет | Gitea API team demotion not applied to unit permissionsgitea · gitea · CWE-272 | Высокая8,1 | — | 0,3 % | 4 дня назад |
36Наблюдать | CVE-2026-103059Эксплойта нет | Gitea built-in SSH server authentication bypass through key case foldinggitea · gitea · CWE-305 | Критическая9,1 | — | 0,3 % | 4 дня назад |
17Наблюдать | CVE-2026-101029Эксплойта нет | Gitea migration and pull mirror SSRF through multi-answer DNSgitea · gitea · CWE-209 | Средняя4,3 | — | 0,2 % | 4 дня назад |
30Наблюдать | CVE-2026-101027Эксплойта нет | Gitea migration SSRF through ALLOWED_DOMAINS address check bypassgitea · gitea · CWE-346 | Высокая7,7 | — | 0,2 % | 4 дня назад |
- CVE-2026-9658917Наблюдать
Gitea private repository access retained after rejected transfer
СредняяCVSS 4,3Эксплойта нетEPSS 0 %gitea · gitea4 дня назад
- CVE-2026-9640432Наблюдать
Gitea installer authentication bypass for existing accounts
ВысокаяCVSS 8,1Эксплойта нетEPSS 0 %gitea · gitea4 дня назад
- CVE-2026-9640017Наблюдать
Gitea migration SSRF to reserved addresses through ALLOWED_DOMAINS
СредняяCVSS 4,3Эксплойта нетEPSS 0 %gitea · gitea4 дня назад
- CVE-2026-9639930Наблюдать
Gitea denial of service through external issue tracker patterns
ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %gitea · gitea4 дня назад
- CVE-2026-9511226Наблюдать
Gitea issue reference parsing CPU exhaustion
СредняяCVSS 6,5Эксплойта нетEPSS 0 %gitea · gitea4 дня назад
- CVE-2026-8943032Наблюдать
Gitea push mirror SSRF and forced writes to internal Git hosts
ВысокаяCVSS 8,1Эксплойта нетEPSS 0 %gitea · gitea4 дня назад
- CVE-2026-7996028Наблюдать
Gitea deploy key pushes acting as the repository owner
ВысокаяCVSS 7,1Эксплойта нетEPSS 0 %gitea · gitea4 дня назад
- CVE-2026-7035730Наблюдать
Gitea repository migration SSRF through DNS rebinding
ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %gitea · gitea4 дня назад
- CVE-2026-10463630Наблюдать
Gitea SSRF through Git HTTP redirects in mirrors and fetches
ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %gitea · gitea4 дня назад
- CVE-2026-10366721Наблюдать
Gitea container registry stored XSS through blob media type
СредняяCVSS 5,4Эксплойта нетEPSS 0 %gitea · gitea4 дня назад
- CVE-2026-10350432Наблюдать
Gitea API team demotion not applied to unit permissions
ВысокаяCVSS 8,1Эксплойта нетEPSS 0 %gitea · gitea4 дня назад
- CVE-2026-10305936Наблюдать
Gitea built-in SSH server authentication bypass through key case folding
КритическаяCVSS 9,1Эксплойта нетEPSS 0 %gitea · gitea4 дня назад
- CVE-2026-10102917Наблюдать
Gitea migration and pull mirror SSRF through multi-answer DNS
СредняяCVSS 4,3Эксплойта нетEPSS 0 %gitea · gitea4 дня назад
- CVE-2026-10102730Наблюдать
Gitea migration SSRF through ALLOWED_DOMAINS address check bypass
ВысокаяCVSS 7,7Эксплойта нетEPSS 0 %gitea · gitea4 дня назад