CVE-2026-27660 | Gitea up to 1.25.4 Attachments access control
A vulnerability identified as critical has been detected in Gitea up to 1.25.4. The impacted element is an unknown function of the component Attachments Handler. This manipulation causes improper access controls.
This vulnerability appears as CVE-2026-27660. The attack may be initiated remotely. There is no available exploit.
You should upgrade the affected component.VulDB Recent EntriesRead More