CVE-2025-68944

Gitea before 1.22.2 sometimes mishandles the propagation of token scope for access control within one of its own package registries.

medium 5.0 CVSS 3.1
Published: Dec 26, 2025
Modified: Dec 31, 2025
Vendor: Gitea
Product: Gitea