Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:25745
HistoryJun 23, 2020 - 4:38 a.m.

Insecure Direct Object Reference

2020-06-2304:38:10
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
6

0.001 Low

EPSS

Percentile

21.8%

github.com/gogs/gogs is vulnerable to insecure direct object reference. A remote attacker is able to configure and set the primary email address of other users on their behalf.

CPENameOperatorVersion
github.com/gogs/gogsle0.11.91

0.001 Low

EPSS

Percentile

21.8%