Launchpad.net

CVE 2021-45326

Cross Site Request Forgery (CSRF) vulnerability exists in Gitea before 1.5.2 via API routes.This can be dangerous especially with state altering POST requests.

See the CVE page on Mitre.org for more details.