CVE-2025-69413
In Gitea before 1.25.2, /api/v1/user has different responses for failed authentication depending on whether a username e
In Gitea before 1.25.2, /api/v1/user has different responses for failed authentication depending on whether a username exists.
MEDIUM · CVSS 5.3
EPSS 0.00019
Schedule remediation
- SSVC automatable: yes - attacks can be scripted at scale
Sigma rules0
YARA rules0