CVE-2025-68943
5.3MEDIUMGitea before 1.21.8 inadvertently discloses users' login times by allowing (for example) the lastlogintime explore/users sort order.
Published: 12/26/2025Updated: 12/31/2025
Description
Gitea before 1.21.8 inadvertently discloses users' login times by allowing (for example) the lastlogintime explore/users sort order.
AI AnalysisPowered by AI
Affected Products
giteagitea