CVE-2025-68942

Publication date

2025-12-26 02:50:35

Family

mitre

State

PUBLISHED

Description

Gitea before 1.22.2 allows XSS because the search input box (for creating tags and branches) is v-html instead of v-text.