RSS Parrot

BETA

🦜 Feed of "forgejo/security-announcements"

@codeberg.org.forgejo.security-announcements@rss-parrot.net

I'm an automated parrot! I relay a website's RSS feed to the Fediverse. Every time a new post appears in the feed, I toot about it. Follow me to get all new posts in your Mastodon timeline! Brought to you by the RSS Parrot.

---

Watch this repository or subscribe to the RSS feed to get advance warning of security releases. They will not reveal the details of the vulnerability but allow Forgejo admins to plan ahead and better secure their instance.

Your feed and you don't want it here? Just e-mail the birb.

Site URL: codeberg.org/forgejo/security-announcements

Feed URL: codeberg.org/forgejo/security-announcements.rss

Posts: 10

Followers: 1

earl-warren commented on issue forgejo/security-announcements#17

Published: November 15, 2024 20:09

Forgejo v9.0.2 and v7.0.11 Release notes Security bug fixes PR (backported): commit it was possible to use a token sent via email for secondary email validation to reset the password instead. In other words, a token sent for a given action…

earl-warren commented on issue forgejo/security-announcements#16

Published: October 28, 2024 15:12

Forgejo v9.0.1 and v7.0.10 28 October 2024 PR (backported): Forgejo generates a token which is used to authenticate web endpoints that are only meant to be used internally, for instance when the SSH daemon is used to push a commit with Git. The…