Open Redirect on login in GitHub repository go-gitea/gitea prior to 1.16.5.
The web application accepts a user-controlled input that specifies a link to an external site, and uses that link in a redirect.
Link | Tags |
---|---|
https://huntr.dev/bounties/4fb42144-ac70-4f76-a5e1-ef6b5e55dc0d | exploit third party advisory patch |
https://github.com/go-gitea/gitea/commit/e3d8e92bdc67562783de9a76b5b7842b68daeb48 | third party advisory patch |