CVE-2025-68941
EUVD-2025-20540826.12.2025, 03:15
Gitea before 1.22.3 mishandles access to a private resource upon receiving an API token with scope limited to public resources.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| gitea | gitea | 𝑥 < 1.22.3 |
𝑥
= Vulnerable software versions