CVE-2026-94205: Gitea fork workflow approval bypass through maintainer-triggered events

Published Oct 6, 2026
·
Updated

Gitea Actions decided whether a fork pull request run needed approval based on the user who triggered the event rather than the pull request author. For pullrequest activity triggered by a maintainer during ordinary triage, such as adding a label, the run was created without requiring approval, while the workflow definition was still taken from the fork head. Where Actions is enabled and a matching runner is registered, fork-controlled workflow code could run on the base repository's runners without an explicit approval.

Affected Software

1 affected component
Gitea Gitea

Event History

Oct 6, 2026
CVE Published
via MITRE·07:25 PM
Data Sourced
via MITRE·07:25 PM
DescriptionWeakness
Data Sourced
via NVD·08:17 PM
DescriptionSeverityWeakness

Frequently Asked Questions

1

Which deployments are exposed to this issue?

Deployments are exposed where Gitea Actions is enabled and a matching runner is registered. The affected scenario involves pull requests from forks whose workflow definitions are taken from the fork head.

2

What maintainer action can trigger the vulnerable workflow run?

Ordinary pull-request triage activity by a maintainer, such as adding a label, can trigger a pull_request event. Gitea evaluates approval based on that maintainer-triggered event rather than on the fork pull request author.

3

What can an attacker achieve if the vulnerable conditions are present?

A fork author can have fork-controlled workflow code executed on the base repository's runners without explicit approval. This occurs when the maintainer-triggered pull_request activity creates a run using the workflow definition from the fork head.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203