You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Hello, we are now using gitea v1.16.8 with golang v1.18.2. However, according to https://nvd.nist.gov/vuln/detail/CVE-2022-32190 , we wonder if this golang security vulnerability would cause unknown issues. So we suggest updating the golang version to v1.18.6 or v1.19.1.
The text was updated successfully, but these errors were encountered:
Bruc3Stark
added
type/feature
Completely new functionality. Can only be merged if feature freeze is not active.
type/proposal
The new feature has not been accepted yet but needs to be discussed first.
labels
Sep 14, 2022
Please don't open security reports in the public issue trackers. You have already sent this to the security email which is the correct process.
You are running an out of date version of Gitea, we have updated to building with the latest golang version within an hour of it being released.
techknowlogick
removed
type/proposal
The new feature has not been accepted yet but needs to be discussed first.
type/feature
Completely new functionality. Can only be merged if feature freeze is not active.
labels
Sep 14, 2022
Feature Description
Hello, we are now using gitea v1.16.8 with golang v1.18.2. However, according to https://nvd.nist.gov/vuln/detail/CVE-2022-32190 , we wonder if this golang security vulnerability would cause unknown issues. So we suggest updating the golang version to v1.18.6 or v1.19.1.
Reference:
https://nvd.nist.gov/vuln/detail/CVE-2022-32190
golang/go#54385
https://groups.google.com/g/golang-announce/c/x49AQzIVX-s
Screenshots
No response
The text was updated successfully, but these errors were encountered: