Missing Authorization and Authorization Bypass Through User-Controlled Key and Incorrect Permission Assignment for Critical Resource and Exposure of Sensitive Information to an Unauthorized Actor in code.gitea.io/gitea
{
"cna_assigner": "Gitea",
"osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/58xxx/CVE-2026-58432.json",
"cwe_ids": [
"CWE-200",
"CWE-639",
"CWE-732",
"CWE-862"
]
}