Loading
Cross Site Request Forgery (CSRF) vulnerability exists in Gitea before 1.5.2 via API routes.This can be dangerous especially with state altering POST requests.
Use CWE-352, Gitea vendor hub and Gitea product page to widen CVE-2021-45326 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2026-20912, CVE-2026-20897 and CVE-2026-20750 for nearby disclosures in the same product family.