Gitea before 1.22.3 mishandles access to a private resource upon receiving an API token with scope limited to public resources.
We have discovered 448 live websites that are affected by CVE-2025-68941.
| 96 websites | |
| 141 websites | |
| 74 websites | |
| 30 websites | |
| 16 websites | |
| 8 websites | |
| 8 websites | |
| 7 websites | |
| 7 websites |
| .com | 93 websites |
| .de | 67 websites |
| .net | 48 websites |
| .org | 38 websites |
| .fr | 22 websites |
| .ru | 14 websites |
| .io | 8 websites |
| .info | 7 websites |
| .eu | 7 websites |
| .it | 7 websites |
| Domain | Country | Rank | Contacts |
|---|---|---|---|
| ***.******.com | ***,*** | ||
| ***.*******.net | ***,*** | ||
| ******.fr | ***,*** | ||
| ****.********.ch | *,***,*** | ||
| ***.*******.ca | *,***,*** | ||
| ***.************.com | *,***,*** | ||
| *****************.xn--p1ai | *,***,*** | ||
| ****.*****.de | *,***,*** | ||
| ******.*************.de | *,***,*** | ||
| ***.*******.com | *,***,*** |
FAQ