Skip to content

Conversation

@Gusted
Copy link
Contributor

@Gusted Gusted commented Jul 1, 2022

…0133)

- Backport go-gitea#20133
  - Check correctly for permission when we fetch a new issue(via ID)
is controlled by the user.
@Gusted Gusted added this to the 1.16.9 milestone Jul 1, 2022
@Gusted Gusted added the type/bug label Jul 1, 2022
@GiteaBot GiteaBot added the lgtm/need 1 This PR needs approval from one additional maintainer to be merged. label Jul 1, 2022
@GiteaBot GiteaBot added lgtm/done This PR has enough approvals to get merged. There are no important open reservations anymore. and removed lgtm/need 1 This PR needs approval from one additional maintainer to be merged. labels Jul 1, 2022
@6543 6543 merged commit 6162fb0 into go-gitea:release/v1.16 Jul 1, 2022
@6543 6543 added the topic/security Something leaks user information or is otherwise vulnerable. Should be fixed! label Jul 12, 2022
@Gusted Gusted deleted the backport-116-20133 branch July 13, 2022 06:20
freebsd-git pushed a commit to freebsd/freebsd-ports that referenced this pull request Aug 5, 2022
 - Add write check for creating Commit status
   go-gitea/gitea#20334

 - Check for permission when fetching user controlled issues
   go-gitea/gitea#20196

PR:		265526
@go-gitea go-gitea locked and limited conversation to collaborators May 3, 2023
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.

Labels

lgtm/done This PR has enough approvals to get merged. There are no important open reservations anymore. topic/security Something leaks user information or is otherwise vulnerable. Should be fixed! type/bug

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants