Security Advisory

CVE-2026-25779

6.1
MEDIUM

Vulnerability Description

Gitea versions up to and including 1.25.4 allow redirect bypasses through raw or percent-encoded backslashes in redirect_to values.
Published Date July 3, 2026
Official Source NIST NVD Advisory