Vulnerabilities > CVE-2023-49947 - Incorrect Authorization vulnerability in Forgejo
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
NONE Integrity impact
HIGH Availability impact
NONE Summary
Forgejo before 1.20.5-1 allows 2FA bypass when docker login uses Basic Authentication.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |