A vulnerability described as problematic has been identified in Gitea up to 1.26.4. This affects an unknown part. The manipulation results in open redirect.
This vulnerability was named CVE-2026-57894. The attack may be performed from remote. There is no available exploit.