• CVE-2022-39205 | Onedev up to 7.2.x HTTP Header /git-prereceive-callba

    From Security Bot@2:467/888.88 to All on Sat May 20 09:10:08 2023


    Title: CVE-2022-39205 | Onedev up to 7.2.x HTTP Header /git-prereceive-callback X-Forwarded-For improper authentication (GHSA-4f9h-h82c-4xm2)
    Description: A vulnerability was found in Onedev up to 7.2.x. It has been rated as critical. This issue affects some unknown processing of the file /git-prereceive-callback of the component HTTP Header Handler. The manipulation of the argument X-Forwarded-For leads to improper authentication. Link: https://vuldb.com/?id.208583
    Wed, 14 Sep 2022 13:06:01 +0200


    --- The information is for informational purposes only.
    * Origin: Read us with http://winpoint.org/ (2:467/888.88)