CVE-2026-23603 | Gitea up to 1.26.4 OAuth2 server-side request forgery

SecurityVulns

A vulnerability classified as problematic was found in Gitea up to 1.26.4. Affected by this issue is some unknown functionality of the component OAuth2. The manipulation results in server-side request forgery.

This vulnerability is identified as CVE-2026-23603. The attack can be executed remotely. There is not any exploit available.VulDB Recent EntriesRead More