[Bug 285727] www/gitea upgrade to 1.23.6 to fix security issues
- Reply: bugzilla-noreply_a_freebsd.org: "[Bug 285727] www/gitea upgrade to 1.23.6 to fix security issues"
- Reply: bugzilla-noreply_a_freebsd.org: "[Bug 285727] www/gitea upgrade to 1.23.6 to fix security issues"
- Reply: bugzilla-noreply_a_freebsd.org: "[Bug 285727] www/gitea upgrade to 1.23.6 to fix security issues"
- Reply: bugzilla-noreply_a_freebsd.org: "[Bug 285727] www/gitea upgrade to 1.23.6 to fix security issues"
- Go to: [ bottom of page ] [ top of archives ] [ this month ]
Date: Fri, 28 Mar 2025 14:26:36 UTC
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=285727 Bug ID: 285727 Summary: www/gitea upgrade to 1.23.6 to fix security issues Product: Ports & Packages Version: Latest Hardware: Any OS: Any Status: New Severity: Affects Many People Priority: --- Component: Individual Port(s) Assignee: ports-bugs@FreeBSD.org Reporter: freebsdbugs@filis.org CC: stb@lassitu.de Flags: maintainer-feedback?(stb@lassitu.de) CC: stb@lassitu.de Created attachment 259122 --> https://bugs.freebsd.org/bugzilla/attachment.cgi?id=259122&action=edit patch to upgrade port to 1.23.6 from their website: --- This release also addresses the following security vulnerabilities: CVE-2025-30204 in jwt and CVE-2025-29923 in go-redis – thanks to @TheFox0x7 for the fix. -CVE-2025-22870 in golang.org/x/crypto and golang.org/x/net – fixed for security hardening. Thanks again to @wxiaoguang for the contribution. -- You are receiving this mail because: You are the assignee for the bug.