CVE-2025-68939
Publication date 26 December 2025
Last updated 26 December 2025
Ubuntu priority
Description
Gitea before 1.23.0 allows attackers to add attachments with forbidden file extensions by editing an attachment name via an attachment API.
Publication date 26 December 2025
Last updated 26 December 2025
Ubuntu priority
Gitea before 1.23.0 allows attackers to add attachments with forbidden file extensions by editing an attachment name via an attachment API.