gitea
Security Risk Profile
Security Risk Score
Comprehensive risk assessment based on 86 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from August 8, 2018 to present
Threat Assessment
Severity Distribution
Exploit Likelihood
Age Distribution
Common Weaknesses (CWE)
Most Affected Products
Recent Vulnerabilities
See more →Gitea prior to 1.27.0 SSRF via Migration URI Fetch Bypass
Hackers exploit critical auth bypass in Gitea Docker image
Critical Gitea Flaw Under Active Exploitation, Researchers Warn
Exploitarium coverage update: CVE-2026-20896 Gitea probing confirmed + 10 new rules added
Gitea Actions Artifacts V4 signed URL HMAC ambiguity allows cross-repository artifact read and cross-task upload-state write
Gitea LFS object reuse bypasses Code-unit authorization
Gitea repository dumps write release assets using unsafe path names
Gitea pre-receive hook permission cache allows full repository write access
Gitea forwarded-proto handling allows public URL spoofing
Gitea pre-receive hook can miss branch-protection checks after scanner errors
Monitor gitea in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.