Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-0798

Опубликовано: 22 янв. 2026
Источник: nvd
CVSS3: 3.5
EPSS Низкий

Описание

Gitea may send release notification emails for private repositories to users whose access has been revoked. When a repository is changed from public to private, users who previously watched the repository may continue to receive release notifications, potentially disclosing release titles, tags, and content.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:gitea:gitea:*:*:*:*:*:-:*:*
Версия до 1.25.4 (исключая)

EPSS

Процентиль: 1%
0.0001
Низкий

3.5 Low

CVSS3

Дефекты

CWE-284

Связанные уязвимости

CVSS3: 3.5
redhat
2 месяца назад

Gitea may send release notification emails for private repositories to users whose access has been revoked. When a repository is changed from public to private, users who previously watched the repository may continue to receive release notifications, potentially disclosing release titles, tags, and content.

CVSS3: 3.5
debian
2 месяца назад

Gitea may send release notification emails for private repositories to ...

CVSS3: 3.5
redos
около 1 месяца назад

Уязвимость gitea

github
2 месяца назад

Gitea may send release notification emails for private repositories to users whose access has been revoked

EPSS

Процентиль: 1%
0.0001
Низкий

3.5 Low

CVSS3

Дефекты

CWE-284