CVE-2025-69413
01.01.2026, 05:16
In Gitea before 1.25.2, /api/v1/user has different responses for failed authentication depending on whether a username exists.Enginsight
| Vendor | Product | Version |
|---|---|---|
| gitea | gitea | 𝑥 < 1.25.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
Vulnerability Media Exposure