Vulnerability Report: GO-2025-4263

Gitea allows XSS because the search input box (for creating tags and branches) is v-html instead of v-text in code.gitea.io/gitea

For detailed information about this vulnerability, visit https://github.com/advisories/GHSA-898p-hh3p-hf9r or https://nvd.nist.gov/vuln/detail/CVE-2025-68942.

Jump to

Keyboard shortcuts

? : This menu
/ : Search site
f or F : Jump to
y or Y : Canonical URL