In Gitea before 1
In Gitea before 1.22.5, branch deletion permissions are not adequately enforced after merging a pull request.
Exploitability
AV:N
AC:H
PR:L
UI:N
Scope
S:U
Impact
C:N
I:L
A:N
3.1/CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:N
Access Control
CWE-863