CVE-2026-24791 | Gitea up to 1.26.1 API Routes /api/v1/user improper authorization

SecurityVulns

A vulnerability categorized as problematic has been discovered in Gitea up to 1.26.1. The affected element is an unknown function of the file /api/v1/user of the component API Routes. The manipulation results in improper authorization.

This vulnerability is known as CVE-2026-24791. It is possible to launch the attack remotely. No exploit is available.VulDB Recent EntriesRead More