Vulnerability Report: GO-2025-4268

Gitea mishandles access to a private resource upon receiving an API token with scope limited to public resources in code.gitea.io/gitea

For detailed information about this vulnerability, visit https://github.com/advisories/GHSA-xfq3-qj7j-4565 or https://nvd.nist.gov/vuln/detail/CVE-2025-68941.

Jump to

Keyboard shortcuts

? : This menu
/ : Search site
f or F : Jump to
y or Y : Canonical URL