CVE-2025-68943 PUBLISHED

Gitea before 1.21.8 inadvertently discloses users' login times by allowing (for example) the lastlogintime explore/users sort order.

EPSS 0.01% · 1.7th percentile

Risk Scores

EPSS Score
0.01%
1.7th percentile

Affected Products

VendorProductVersions
Bitnamigitea0
Bitnamigitea0, 0

Timeline

References

Open in Interactive Console →