Gitea Team reports:
Fix potential XSS vulnerability in repository descriptblog.gitea.io/2019/03/gitea-1.7.4-is-released/
l( t / 5 Wx^]Pj0<_(rCՇ e-2!ߕӷAfgg5ax?C=UYffިRFM"9ɵ\ߴԚveC7 Mm)=, (B:F]"r^w@{wD_팚d#ByZ5x6JBb~n~t=%.F !C 8\`B3B'>x,.jA(,hЅ(Y/} RE؈;U,p>8{ F߂1(R.oʨ!/,k?|@o9y!9aOCo|89Kr} q v} 5 Ux^}k0Ɵ軭(-^`$4!f"gGstSl$Nl.crYhBۻ/\T<_Un7 D) o*54';\ u"#o2 %)ITZJSzVZ1|=b xn۪ u}zZd'NgSzȎ Bbw]ŋ{]ojB;Ae&nj|Ï`hGrACލw|&RӜ,NѿMb,coAh>F9Ť;d`g[D&yn@x{=cǯ E3u_9_ }q W> @@ R: {eading to worker exhaustion and a denial of service. (low) 2019-03-12 2019-03-20 mod_md, DoS via Coredumps on specially crafted requests (CVE-2018-8011). By specially crafting HTTP requests, the mod_md challenge handler would dereference a NULL pointer and cause the child process to segfault. This could be used to DoS the server. (moderate)url>http://httpd.apache.org/security/vulnerabilities_24.html CVE-2018-1333 CVE-2018-80117-18 f r Q 5 Yx^MQN0|+V}qkL$N~`koӒIh4;ޙݱGu:Ky:PC`([˿"OBRQvP"FS;3ʶ,N7"*ya>juNɉ*y\SތpDpa^gM^bPd܉?J7gn5{E. wҞ {C<s=!蔜$tT%c3*"K忚E7Hx 9JyHmNϟE1ƚ-ME(^o!֖W<ǐ=Dpv=Fΐ3B-TBZ gm w@ x? at 5 eecurity/AST-2018-002.html https://downloads.asterisk.org/pub/security/AST-2018-003.html phpMyAdmin -- self XSS in central columns feature phpMyAdmin 4.7.0 4.78-1/"> Summary
Self XSS in central col H C@ = = ~= {:Fbxml2 20904-GITv2.9.4-16-g0741801 is vulnerable to a heap-based buffer over-read in the xmlDictAddString function in dict.c. This vulnerability causes programs that use libxml2, such as PHP, to crash. This vulnerability exists because of an incomplete fix for CVE-2016-1839.