Description
An issue exsits in Gitea through 1.15.7, which could let a malicious user gain privileges due to client side cookies not being deleted and the session remains valid on the server side for reuse.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-1126 | An issue exsits in Gitea through 1.15.7, which could let a malicious user gain privileges due to client side cookies not being deleted and the session remains valid on the server side for reuse. |
Github GHSA |
GHSA-pg38-r834-g45j | Improper Privilege Management in Gitea |
References
| Link | Providers |
|---|---|
| https://github.com/go-gitea/gitea/issues/4336 |
|
History
Wed, 16 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T04:39:20.483Z
Reserved: 2021-12-20T00:00:00.000Z
Link: CVE-2021-45330
No data.
Status : Modified
Published: 2022-02-09T18:15:09.970
Modified: 2024-11-21T06:32:05.797
Link: CVE-2021-45330
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA