Privilege Escalation Vulnerability in Gitea by Gitea Team
CVE-2021-45330
9.8CRITICAL
What is CVE-2021-45330?
A security issue exists in Gitea that allows malicious users to gain unauthorized privileges. This vulnerability arises from a flaw in session management, where client-side cookies are not properly invalidated, leading to sessions remaining valid on the server-side for reuse. As a result, attackers can exploit this weakness to execute unauthorized actions within the Gitea environment.
