Vulnerability Database
Blog
FAQ
Docs
CVE-2022-2024
See a problem?
Please try reporting it
to the source
first.
Source
https://nvd.nist.gov/vuln/detail/CVE-2022-2024
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-2024.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2022-2024
Aliases
GHSA-pfvh-p8qp-9ww9
GO-2023-1596
Published
2023-02-25T08:15:09Z
Modified
2025-01-08T14:00:57.079066Z
Severity
9.8 (Critical)
CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS Calculator
Summary
[none]
Details
OS Command Injection in GitHub repository gogs/gogs prior to 0.12.11.
References
https://huntr.dev/bounties/18cf9256-23ab-4098-a769-85f8da130f97
https://github.com/gogs/gogs/commit/15d0d6a94be0098a8227b6b95bdf2daed105ec41
Affected packages
Git
/
github.com/gogs/gogs
Affected ranges
Type
GIT
Repo
https://github.com/gogs/gogs
Events
Introduced
0
Unknown introduced commit / All previous commits are affected
Fixed
15d0d6a94be0098a8227b6b95bdf2daed105ec41
Fixed
15d0d6a94be0098a8227b6b95bdf2daed105ec41
Affected versions
v0.*
v0.10
v0.10.1
v0.10.18
v0.10.8
v0.10rc
v0.11
v0.11.19
v0.11.29
v0.11.33
v0.11.34
v0.11.4
v0.11.43
v0.11.53
v0.11.66
v0.11.79
v0.11.86
v0.11.91
v0.11rc
v0.2.0
v0.3.0
v0.3.1
v0.4.0
v0.4.1
v0.4.2
v0.5.0
v0.5.11
v0.5.13
v0.5.2
v0.5.5
v0.5.8
v0.5.9
v0.6.0
v0.6.1
v0.6.15
v0.6.3
v0.6.5
v0.6.9
v0.7.0
v0.7.19
v0.7.22
v0.7.33
v0.7.6
v0.8.0
v0.8.10
v0.8.25
v0.8.43
v0.9.0
v0.9.113
v0.9.128
v0.9.13
v0.9.141
v0.9.46
v0.9.48
v0.9.60
v0.9.71
v0.9.97
CVE-2022-2024 - OSV