Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Gitea — Vulnerabilities & Security Advisories 112

Browse all 112 CVE security advisories affecting Gitea. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Gitea is a lightweight, self-hosted Git service designed to provide version control and collaboration features similar to GitHub or GitLab. Its architecture prioritizes ease of deployment and low resource consumption, making it popular among small to medium-sized organizations seeking an alternative to heavier platforms. Historically, security audits have identified several critical vulnerability classes within the codebase, including remote code execution (RCE), cross-site scripting (XSS), and privilege escalation flaws. These issues often stem from improper input validation or insufficient access controls in specific endpoints. While no massive, widespread breaches have defined its public history, the presence of twenty-two recorded CVEs indicates a pattern of discrete security defects that require diligent patching. The project’s open-source nature allows for community-driven scrutiny, yet the frequency of these findings underscores the necessity for rigorous code review and timely updates to maintain a secure development environment.

Found 14 results / 112 Clear Filters
CVE ID Title CVSS Severity Published
CVE-2026-60004 Gitea 代码注入漏洞 — Gitea CWE-94 9.8 Critical 2026-08-26
CVE-2026-34966 Gitea prior to 1.27.0 SSRF via Migration URI Fetch Bypass — Gitea CWE-918 7.6 High 2026-08-05
CVE-2025-69413 Gitea 安全漏洞 — Gitea CWE-204 5.3 Medium 2026-01-01
CVE-2025-68946 Gitea 安全漏洞 — Gitea CWE-79 5.4 Medium 2025-12-26
CVE-2025-68945 Gitea 安全漏洞 — Gitea CWE-359 5.8 Medium 2025-12-26
CVE-2025-68944 Gitea 安全漏洞 — Gitea CWE-441 5.0 Medium 2025-12-26
CVE-2025-68943 Gitea 安全漏洞 — Gitea CWE-497 5.3 Medium 2025-12-26
CVE-2025-68942 Gitea 安全漏洞 — Gitea CWE-79 5.4 Medium 2025-12-26
CVE-2025-68941 Gitea 安全漏洞 — Gitea CWE-863 4.9 Medium 2025-12-26
CVE-2025-68940 Gitea 安全漏洞 — Gitea CWE-863 3.1 Low 2025-12-26
CVE-2025-68939 Gitea 安全漏洞 — Gitea CWE-424 8.2 High 2025-12-26
CVE-2025-68938 Gitea 安全漏洞 — Gitea CWE-863 4.3 Medium 2025-12-26
CVE-2019-1010261 Gitea 跨站脚本漏洞 — Gitea 6.1 - 2019-07-18
CVE-2019-1010314 Gitea 跨站脚本漏洞 — Gitea 6.1 - 2019-07-11

This page lists every published CVE security advisory associated with Gitea. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.