5
CVSSv2

CVE-2018-15192

Published: 08/08/2018 Updated: 18/10/2018
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 8.6 | Impact Score: 4 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

An SSRF vulnerability in webhooks in Gitea up to and including 1.5.0-rc2 and Gogs up to and including 0.11.53 allows remote malicious users to access intranet services.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

gogs gogs

gitea gitea 1.5.0

gitea gitea