Gitea

Security Scorecard

Score

100A

Total CVEs

8

Patch Rate

100%

8 patched

Avg Response

-

days to patch

Critical Gaps

0

exploitable, no detection

Severity Breakdown

Critical3
High1
Medium4
Low0

Patch Status

Patched8 (100%)
Partial/Workaround0 (0%)
Unpatched0 (0%)

CVEs (8)

CVE IDTitleSeverityScoreDaysPatch
CVE-2026-20736CVE-2026-20736High7.5-Patched
CVE-2026-20750CVE-2026-20750Critical9.1-Patched
CVE-2026-20883Gitea Stopwatch API Privilege EscalationMedium6.5-Patched
CVE-2026-20897CVE-2026-20897Critical9.1-Patched
CVE-2026-20904CVE-2026-20904Medium6.5-Patched
CVE-2026-20912Gitea Repository Attachment Link VulnerabilityCritical9.1-Patched
CVE-2025-68943Gitea Login Time DisclosureMedium5.3-Patched
CVE-2025-68944Gitea Package Registry Scope MishandlingMedium5.0-Patched