An issue exsits in Gitea through 1.15.7, which could let a malicious user gain privileges due to client side cookies not being deleted and the session remains valid on the server side for reuse.

Project Subscriptions

Vendors Products
Advisories
Source ID Title
EUVD EUVD EUVD-2022-1126 An issue exsits in Gitea through 1.15.7, which could let a malicious user gain privileges due to client side cookies not being deleted and the session remains valid on the server side for reuse.
Github GHSA Github GHSA GHSA-pg38-r834-g45j Improper Privilege Management in Gitea
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Wed, 16 Jul 2025 13:45:00 +0000

Type Values Removed Values Added
Metrics epss

{'score': 0.01295}

epss

{'score': 0.01263}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-04T04:39:20.483Z

Reserved: 2021-12-20T00:00:00

Link: CVE-2021-45330

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-02-09T18:15:09.970

Modified: 2024-11-21T06:32:05.797

Link: CVE-2021-45330

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses