Beveiligingsadvies

CVE-2026-22555

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-07-03 20:19:30
Laatst bijgewerkt 2026-07-06 20:23:09
Toegewezen door Gitea
CVSS-score 8.1
Status PUBLISHED

Beschrijving

Gitea versions before 1.26.0 allow API users to fork a repository into an organization without first passing the CanCreateOrgRepo check, which can expose organization secrets.