Vulnerabilities > Gitea > Gitea > 1.13.0

DATE CVE VULNERABILITY TITLE RISK
2021-03-15 CVE-2021-28378 Cross-site Scripting vulnerability in Gitea
Gitea 1.12.x and 1.13.x before 1.13.4 allows XSS via certain issue data in some situations.
network
gitea CWE-79
3.5
2021-02-05 CVE-2021-3382 Out-of-bounds Write vulnerability in Gitea
Stack buffer overflow vulnerability in gitea 1.9.0 through 1.13.1 allows remote attackers to cause a denial of service (crash) via vectors related to a file path.
network
low complexity
gitea CWE-787
5.0