CVE Field Guide
About Us
CVE-2026-58419
PUBLISHED
Notification API leaks private issue metadata after access revocation
Assigner:
Gitea
Reserved:
30.06.2026
Published:
03.07.2026
Updated:
03.07.2026
Notification API leaks private issue metadata after access revocation
Product Status
Vendor
Gitea
Product
Gitea Open Source Git Server
Versions
Default:
unaffected
Version 1.26.2 is affected
Credits
ybsun0215
reporter
References
GitHub Security Advisory
GitHub Pull Request #38108
Gitea v1.26.4 Release
Gitea v1.26.4 Release Blog Post
Problem Types
CWE-200
CWE