CVE-2020-9329 (NVD)

2020-02-21

Gogs through 0.11.91 allows attackers to violate the admin-specified repo-creation policy due to an internal/db/repo.go race condition.

Products Gogs
Type Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') (CWE-362)
First patch - None (likely due to unavailable code)
Links https://github.com/gogs/gogs/issues/5926