CVE-2019-11229
models/repo_mirror.go in Gitea before 1.7.6 and 1.8.x before 1.8-RC3 mishandles mirror repo URL settings, leading to remote code execution.
- Gitea
- < 1.7.6, 1.8.0
- Fix
- Available
- CVSS 3.1
- 8.8 HIGH
- EPSS
- 55.0% (99th percentile)
- NVD status
- Modified
- Published
- 2019-04-13
CVE-2019-11229 at NVD
2 known exploits for CVE-2019-11229
Proof-of-concept code and exploit modules indexed by Sploitus