Security Advisory
CVE-2026-25718
9.1
CRITICAL
Vulnerability Description
Gitea versions before 1.25.5 mishandle path resolution during template repository generation, allowing template processing to read or write through symlinked or otherwise non-regular paths.
Published Date
July 3, 2026
Official Source
NIST NVD Advisory