forgejo Info

forgejo was added to epel10 repo on 2025-08-15
Page updated: 2025-11-12 13:03
Repo Status - Overall Status

Source NVR: forgejo-12.0.4-1.el10_2 (2025-08-15)

Binary Packages

forgejo forgejo-12.0.4-1.el10_2

Bugs

2398286 NEW CVE-2025-47910 forgejo: CrossOriginProtection bypass in net/http [epel-10]
2398917 NEW CVE-2025-47906 forgejo: Unexpected paths returned from LookPath in os/exec [epel-10]
2399822 NEW CVE-2025-57347 forgejo: dagre-d3-es prototype pollution [epel-10]
2403134 NEW CVE-2025-11579 forgejo: RarDecode Out Of Memory Crash [epel-10]
2403977 NEW CVE-2025-61927 forgejo: Happy-DOM VM Context Escape [epel-10]
2404264 NEW CVE-2025-62410 forgejo: --disallow-code-generation-from-strings is not sufficient for isolating untrusted JavaScript in happy-dom [epel-10]
2404313 NEW CVE-2025-59288 forgejo: Playwright Spoofing Vulnerability [epel-10]
2407469 NEW CVE-2025-58189 forgejo: go crypto/tls ALPN negotiation error contains attacker controlled information [epel-10]
2408525 NEW CVE-2025-61725 forgejo: Excessive CPU consumption in ParseAddress in net/mail [epel-10]
2408914 NEW CVE-2025-61723 forgejo: Quadratic complexity when parsing some invalid inputs in encoding/pem [epel-10]
2409859 NEW CVE-2025-58185 forgejo: Parsing DER payload can cause memory exhaustion in encoding/asn1 [epel-10]
2410803 NEW CVE-2025-58188 forgejo: Panic when validating certificates with DSA public keys in crypto/x509 [epel-10]
2412479 NEW CVE-2025-58183 forgejo: Unbounded allocation when parsing GNU sparse map [epel-all]

Install Failures