Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Gitea — Vulnerabilities & Security Advisories 22

Browse all 22 CVE security advisories affecting Gitea. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Gitea is a lightweight, self-hosted Git service designed to provide version control and collaboration features similar to GitHub or GitLab. Its architecture prioritizes ease of deployment and low resource consumption, making it popular among small to medium-sized organizations seeking an alternative to heavier platforms. Historically, security audits have identified several critical vulnerability classes within the codebase, including remote code execution (RCE), cross-site scripting (XSS), and privilege escalation flaws. These issues often stem from improper input validation or insufficient access controls in specific endpoints. While no massive, widespread breaches have defined its public history, the presence of twenty-two recorded CVEs indicates a pattern of discrete security defects that require diligent patching. The project’s open-source nature allows for community-driven scrutiny, yet the frequency of these findings underscores the necessity for rigorous code review and timely updates to maintain a secure development environment.

Found 12 results / 22Clear Filters
CVE IDTitleCVSSSeverityPublished
CVE-2025-69413 Gitea 安全漏洞 — GiteaCWE-204 5.3 Medium2026-01-01
CVE-2025-68946 Gitea 安全漏洞 — GiteaCWE-79 5.4 Medium2025-12-26
CVE-2025-68945 Gitea 安全漏洞 — GiteaCWE-359 5.8 Medium2025-12-26
CVE-2025-68944 Gitea 安全漏洞 — GiteaCWE-441 5.0 Medium2025-12-26
CVE-2025-68943 Gitea 安全漏洞 — GiteaCWE-497 5.3 Medium2025-12-26
CVE-2025-68942 Gitea 安全漏洞 — GiteaCWE-79 5.4 Medium2025-12-26
CVE-2025-68941 Gitea 安全漏洞 — GiteaCWE-863 4.9 Medium2025-12-26
CVE-2025-68940 Gitea 安全漏洞 — GiteaCWE-863 3.1 Low2025-12-26
CVE-2025-68939 Gitea 安全漏洞 — GiteaCWE-424 8.2 High2025-12-26
CVE-2025-68938 Gitea 安全漏洞 — GiteaCWE-863 4.3 Medium2025-12-26
CVE-2019-1010261 Gitea 跨站脚本漏洞 — Gitea 6.1 -2019-07-18
CVE-2019-1010314 Gitea 跨站脚本漏洞 — Gitea 6.1 -2019-07-11

This page lists every published CVE security advisory associated with Gitea. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.