Skip to content

Improper PAM authorization handling #6810

Closed
@ysf

Description

@ysf

Gogs version

<= 0.13

Git version

N/A

Operating system

Archlinux

Database

n/a

Describe the bug

The security policy states not disclosing anything. So here is the report on huntr.dev it is only viewable to people with write access to this repository, an me: https://huntr.dev/bounties/ea82cfc9-b55c-41fe-ae58-0d0e0bd7ab62/

To reproduce

See report

Expected behavior

See report

Additional context

No response

Code of Conduct

  • I agree to follow this project's Code of Conduct

Metadata

Metadata

Assignees

Labels

🔒 securityCategorizes as related to security

Type

No type

Projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions