CVE-2020-14958

In Gogs 0.11.91, MakeEmailPrimary in models/user_mail.go lacks a "not the owner of the email" check.
References
Configurations

Configuration 1

cpe:2.3:a:gogs:gogs:0.11.91:*:*:*:*:*:*:*

Information

Published : 2020-06-21 08:15

Updated : 2020-06-26 08:28


NVD link : CVE-2020-14958

Mitre link : CVE-2020-14958

Products Affected
No products.
CWE
CWE-281

Improper Preservation of Permissions