Impact
Two SSRF vulnerabilities exist in the migration/mirror functionality of Gitea. An attacker can influence the server to resolve arbitrary DNS names or bypass re-validation, causing Gitea to send requests to internal or external resources on the attacker's behalf. This flaw enables reading or writing data from internal services that the Gitea instance can reach, posing a risk to confidentiality and integrity.
Affected Systems
The product affected is Gitea Open Source Git Server. Any deployment that includes the migration/mirror feature is at risk. Version information is unspecified, but the fix is included in release 1.27.0 and later.
Risk and Exploitability
The vulnerability is identified as a server‑side request forgery with internal network reach. No EPSS score or KEV listing is available. The attack vector likely involves sending injected data through the migration/mirror API or web interface, and authentication may not be required if the endpoint is publicly reachable. Effective risk depends on the exposure of the endpoint and network segmentation.
OpenCVE Enrichment