Forgejo
3 known vulnerabilities
Top Products
Forgejo before 1.20.5-1 allows remote attackers to test for the existence of private user accounts by appending .rss (or
Forgejo before 1.20.5-1 allows 2FA bypass when docker login uses Basic Authentication.
In Forgejo before 1.20.5-1, certain endpoints do not check whether an object belongs to a repository for which permissio
Frequently Asked Questions
How many CVEs affect Forgejo?
Forgejo has 3 CVE records in our database, including 1 critical and 1 high severity vulnerabilities.
What are the most severe Forgejo vulnerabilities?
Forgejo has 1 critical severity (CVSS 9.0+) and 1 high severity (CVSS 7.0-8.9) vulnerabilities. Review the list above sorted by publication date to find the most recent high-severity issues.
How can I scan for Forgejo vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Forgejo products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Forgejo Vulnerabilities
CyberStrike scans your infrastructure for Forgejo vulnerabilities and provides real-time remediation guidance.
Get Started