{"id":"GO-2023-1972","summary":"Gogs XSS Vulnerability in gogs.io/gogs","details":"Gogs XSS Vulnerability in gogs.io/gogs","aliases":["CVE-2018-17031","GHSA-px5r-fqj6-r2f8"],"modified":"2026-03-03T04:54:04.668567Z","published":"2024-08-20T20:32:20Z","database_specific":{"url":"https://pkg.go.dev/vuln/GO-2023-1972","review_status":"UNREVIEWED"},"references":[{"type":"ADVISORY","url":"https://github.com/advisories/GHSA-px5r-fqj6-r2f8"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2018-17031"},{"type":"WEB","url":"https://github.com/gogs/gogs/commit/e14b6abf9dae13bc087c9d9db8fe7c7a5125c792"},{"type":"WEB","url":"https://github.com/gogs/gogs/issues/5397"},{"type":"WEB","url":"https://github.com/gogs/gogs/pull/6008"}],"affected":[{"package":{"name":"gogs.io/gogs","ecosystem":"Go","purl":"pkg:golang/gogs.io/gogs"},"ranges":[{"type":"SEMVER","events":[{"introduced":"0"},{"fixed":"0.12.0"}]}],"ecosystem_specific":{},"database_specific":{"source":"https://vuln.go.dev/ID/GO-2023-1972.json"}}],"schema_version":"1.7.3"}