Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Update go-macaron/session to latest mast to fix RCE-bug #5177

Merged
merged 5 commits into from
Oct 25, 2018

Conversation

bkcsoft
Copy link
Member

@bkcsoft bkcsoft commented Oct 25, 2018

Should fix #5140

@bkcsoft bkcsoft added the lgtm/need 1 This PR needs approval from one additional maintainer to be merged. label Oct 25, 2018
@lafriks lafriks added topic/security Something leaks user information or is otherwise vulnerable. Should be fixed! backport/v1.6 labels Oct 25, 2018
@lafriks lafriks added this to the 1.7.0 milestone Oct 25, 2018
@bkcsoft bkcsoft added lgtm/done This PR has enough approvals to get merged. There are no important open reservations anymore. and removed lgtm/need 1 This PR needs approval from one additional maintainer to be merged. labels Oct 25, 2018
@lunny lunny merged commit aeb5655 into master Oct 25, 2018
@lunny
Copy link
Member

lunny commented Oct 25, 2018

Please send back port to release/v1.6 and release/v1.5

@lafriks lafriks deleted the update-macaron-session branch October 25, 2018 14:25
@bkcsoft bkcsoft mentioned this pull request Oct 26, 2018
@lunny lunny added the backport/done All backports for this PR have been created label Oct 29, 2018
@go-gitea go-gitea locked and limited conversation to collaborators Nov 24, 2020
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
backport/done All backports for this PR have been created lgtm/done This PR has enough approvals to get merged. There are no important open reservations anymore. topic/security Something leaks user information or is otherwise vulnerable. Should be fixed!
Projects
None yet
Development

Successfully merging this pull request may close these issues.

gitea remote command execution with default installation
5 participants