HomeFreeBSD

www/gitea: Update 1.23.5 => 1.23.6 (CVE-2025-30204, CVE-2025-29923, CVE-2025…

Description

www/gitea: Update 1.23.5 => 1.23.6 (CVE-2025-30204, CVE-2025-29923, CVE-2025-22870)

This release also addresses the following security vulnerabilities:

  • CVE-2025-30204 in jwt and CVE-2025-29923 in go-redis – thanks to @TheFox0x7 for the fix.
  • CVE-2025-22870 in golang.org/x/crypto and golang.org/x/net – fixed for security hardening. Thanks again to @wxiaoguang for the contribution.

Changelog:
https://blog.gitea.com/release-of-1.23.6/

PR: 285727
Approved by: Stefan Bethke <stb@lassitu.de> (maintainer)
MFH: 2025Q1

(cherry picked from commit 25fbbf6ad58085c9127a92461a39344b8f792163)

Details

Provenance
filisAuthored on Mar 30 2025, 1:14 PM
vvdCommitted on Mar 30 2025, 1:28 PM
Parents
R11:1686898571e6: www/gitlab: security and patch update to 10.7.1
Branches
Unknown
Tags
Unknown