3.5
CVSSv2

CVE-2022-1464

Published: 05/05/2022 Updated: 13/05/2022
CVSS v2 Base Score: 3.5 | Impact Score: 2.9 | Exploitability Score: 6.8
CVSS v3 Base Score: 5.4 | Impact Score: 2.7 | Exploitability Score: 2.3
VMScore: 312
Vector: AV:N/AC:M/Au:S/C:N/I:P/A:N

Vulnerability Summary

Stored xss bug in GitHub repository gogs/gogs before 0.12.7. As the repo is public , any user can view the report and when open the attachment then xss is executed. This bug allow executed any javascript code in victim account .

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

gogs gogs