Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-58438

Опубликовано: 13 авг. 2026
Источник: redhat
CVSS3: 6.5

Описание

Cross-repository IDOR in issue-dependency removal lets an attacker tamper with and comment on private repos they cannot access

A flaw was found in Gitea. This vulnerability, identified as an Insecure Direct Object Reference (IDOR), exists within the issue-dependency removal function. A remote attacker with write access to issues in one repository can exploit this flaw to remove a dependency link to an issue in a private repository they are not authorized to access. This allows the attacker to tamper with issue-tracking states and inject comments into private repositories, leading to unauthorized write operations across private repository boundaries.

Отчет

A flaw was found in Gitea's issue-dependency removal logic. Due to insufficient authorization checks, a remote user with issue-write access in one repository can manipulate dependency relations pointing to an issue in a separate, restricted private repository. An attacker can exploit this IDOR flaw by targeting known issue IDs to remove dependency links and inject unauthorized system comments into private repositories beyond their permitted access scope, compromising cross-repository data integrity.

Меры по смягчению последствий

To mitigate this issue, restrict write access to repository issues to trusted users, or temporarily disable issue tracking on affected repositories until a patch is applied.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
OpenShift Pipelinesopenshift-pipelines/pipelines-pipelines-as-code-controller-rhel9Affected
OpenShift Pipelinesopenshift-pipelines/pipelines-pipelines-as-code-watcher-rhel9Affected

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-639
https://bugzilla.redhat.com/show_bug.cgi?id=2515492gitea.dev: Gitea: Unauthorized tampering and commenting on private repositories via insecure direct object reference

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 7.5
nvd
20 дней назад

Cross-repository IDOR in issue-dependency removal lets an attacker tamper with and comment on private repos they cannot access

github
около 1 месяца назад

Gitea: Cross-repository IDOR in issue-dependency removal lets an attacker tamper with and comment on private repos they cannot access

6.5 Medium

CVSS3