CNNVD-202512-4787 Information

CNNVD ID

CNNVD-202512-4787

CVE-2025-68938

  • CNNVD Published: 2025-12-26

Description (Chinese)

Gitea是Gitea社区的一个基于Go开发的轻量型git服务。 Gitea 1.25.2之前版本存在安全漏洞,该漏洞源于删除发布时授权处理不当。

Description (English)

Gitea is a light-size git service developed by Go in the Gitea community. There was a security loophole in the pre-Gitea 1.25.2 version, which stemmed from the improper handling of the authorization when the release was deleted.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Gitea

Published

2025-12-26

Last Modified

2026-02-24

References

https://blog.gitea.com/release-of-1.25.2/ https://github.com/go-gitea/gitea/pull/36002/commits/d4262131b39899d9e9ee5caa2635c810d476e43f#diff-8962bac89952027d50fa51f31f59d65bedb4c02bde0265eced5cf256cbed306d https://github.com/go-gitea/gitea/releases/tag/v1.25.2 https://access.redhat.com/security/cve/cve-2025-68938

Patch

https://github.com/go-gitea/gitea/releases

Share on: