Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-7xq4-mwcp-q8fx | Gitea: anonymous user can visit private user's project |
Wed, 31 Dec 2025 22:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:gitea:gitea:*:*:*:*:*:-:*:* |
Sat, 27 Dec 2025 00:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | gitea: Gitea: Information disclosure via anonymous access to private user projects | |
| References |
| |
| Metrics |
threat_severity
|
threat_severity
|
Fri, 26 Dec 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 26 Dec 2025 04:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | In Gitea before 1.21.2, an anonymous user can visit a private user's project. | |
| First Time appeared |
Gitea
Gitea gitea |
|
| Weaknesses | CWE-359 | |
| CPEs | cpe:2.3:a:gitea:gitea:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Gitea
Gitea gitea |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-12-26T18:59:29.985Z
Reserved: 2025-12-26T03:58:46.374Z
Link: CVE-2025-68945
Updated: 2025-12-26T14:49:17.801Z
Status : Analyzed
Published: 2025-12-26T04:15:41.507
Modified: 2025-12-31T22:27:43.937
Link: CVE-2025-68945
OpenCVE Enrichment
No data.
Github GHSA