CVE-2026-26232 | Gitea up to 1.25.4 authentication replay
A vulnerability, which was classified as problematic, has been found in Gitea up to 1.25.4. Affected is an unknown function. The manipulation leads to authentication bypass by capture-replay.
This vulnerability is referenced as CVE-2026-26232. Remote exploitation of the attack is possible. No exploit is available.
It is advisable to upgrade the affected component.