VYPR

rpm package

opensuse/gitea-tea&distro=openSUSE Tumbleweed

pkg:rpm/opensuse/gitea-tea&distro=openSUSE%20Tumbleweed

Vulnerabilities (3)

  • CVE-2026-56855HigSep 2, 2026
    affected < 0.16.0-1.1fixed 0.16.0-1.1

    Previously, after a channel has been established, a malicious peer could send crafted messages that would deadlock the entire connection. Now, we handle all RFC 4254 channel messages; global requests are handled explicitly. Then, treat all other messages as a protocol error and t

  • CVE-2025-58190MedFeb 5, 2026
    affected < 0.11.0-2.1fixed 0.11.0-2.1

    The html.Parse function in golang.org/x/net/html has an infinite parsing loop when processing certain inputs, which can lead to denial of service (DoS) if an attacker provides specially crafted HTML content.

  • CVE-2025-47911MedFeb 5, 2026
    affected < 0.11.0-2.1fixed 0.11.0-2.1

    The html.Parse function in golang.org/x/net/html has quadratic parsing complexity when processing certain inputs, which can lead to denial of service (DoS) if an attacker provides specially crafted HTML content.