Repository navigation
Conversation
…-Agent#3201) Signed-off-by: Shashank Varma <324153016+shashankvarma499@users.noreply.github.com>
Co-authored-by: Utsab <utsab@pr-agent.dev>
Co-authored-by: Utsab <utsab@pr-agent.dev>
Co-authored-by: Aurora <aurora9c69543e@atomicmail.ai>
…-Agent#3163) Co-authored-by: Alex Tumanov <6143578+oleksii-tumanov@users.noreply.github.com>
…e-PR-Agent#3204) Co-authored-by: Claude Opus 5 <noreply@anthropic.com>
…Agent#3213) Co-authored-by: Claude Opus 5 <noreply@anthropic.com>
…ent#3219) Co-authored-by: Aurora <aurora9c69543e@atomicmail.ai>
Signed-off-by: hwan <3373484735@qq.com>
Signed-off-by: hwan <3373484735@qq.com>
Co-authored-by: Aurora <aurora9c69543e@atomicmail.ai>
Co-authored-by: even-even <>
…he-PR-Agent#3217) Co-authored-by: Utsab <utsab@pr-agent.dev>
…#3231) Co-authored-by: mihailchkik <Mihailchik@users.noreply.github.com>
…-Agent#3250) Co-authored-by: Ismael Martinez Ramos <ismaelmartinez@gmail.com> Co-authored-by: Claude Opus 5 (1M context) <noreply@anthropic.com>
Co-authored-by: Ismael Martinez Ramos <ismaelmartinez@gmail.com> Co-authored-by: Claude Opus 5 (1M context) <noreply@anthropic.com>
…Agent#3227) Co-authored-by: Utsab <utsab@pr-agent.dev> Co-authored-by: Ismael Martinez Ramos <ismaelmartinez@gmail.com> Co-authored-by: Claude Opus 5 (1M context) <noreply@anthropic.com>
…destination commit (The-PR-Agent#3576)
Co-authored-by: vyuroshchin <> Co-authored-by: IsmaelMartinez <ISMAELMARTINEZ@GMAIL.COM>
Co-authored-by: Ismael Martinez Ramos <ismaelmartinez@gmail.com> Co-authored-by: Claude Opus 5 (1M context) <noreply@anthropic.com>
…gent#3585) Co-authored-by: Alex Tumanov <6143578+oleksii-tumanov@users.noreply.github.com>
Co-authored-by: IsmaelMartinez <ISMAELMARTINEZ@GMAIL.COM>
Co-authored-by: Oleksii Tumanov <oleksii-tumanov@users.noreply.github.com>
Co-authored-by: Alex Tumanov <6143578+oleksii-tumanov@users.noreply.github.com>
…-PR-Agent#3594) Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Owner
Author
|
Closed: created against the fork instead of the upstream repo |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Description
Fixes a fail-open webhook authentication bug in the Gitea server.
The Gitea webhook handler only verified signature authenticity when
GITEA.WEBHOOK_SECRETwas configured. Since the shipped default leaves it empty, every deployment that skipped the secret accepted forged webhook events. Any internet caller could post fakeissue_commentorpull_requestevents (for example a comment body of/reviewwith an arbitrarypull_request.url) and trigger expensive AI commands against PRs the bot token can read, without it ever coming from Gitea.The other providers already fail closed:
Gitea was the open outlier.
Change
GITEA.WEBHOOK_SECRETis not configured, matching the GitHub app behavior..secrets_template.toml.Testing
test_unconfigured_secret_rejects_every_webhookverifies an unauthenticated request is refused with 403, no command is dispatched, and no background task is scheduled.tests/unittest/test_gitea_comment_webhooks.py,test_webhook_logic_core.py,test_should_process_pr_logic_shared.py, andtest_pr_command_profiles.pyall green.