CVE-2026-20706
Gitea versions up to and including 1.26.1 allow repository archive downloads to bypass token scope checks on the web archive download endpoi
CVSS
9.1
Critical
EPSS
0.4%
p33
KEV
—
Exploit Today
10
0-100
Published: Jul 3, 2026 · Last modified: Jul 6, 2026 · CWE-284
0.3%EPSS · 30 days0.4%
2026-07-042026-07-21
Gitea versions up to and including 1.26.1 allow repository archive downloads to bypass token scope checks on the web archive download endpoint.
- blog.gitea.comhttps://blog.gitea.com/release-of-1.26.2/
- github.comhttps://github.com/go-gitea/gitea/pull/37735
- github.comhttps://github.com/go-gitea/gitea/releases/tag/v1.26.2
- github.comhttps://github.com/go-gitea/gitea/security/advisories/GHSA-cr4g-f395-h25h
- github.comhttps://github.com/go-gitea/gitea/security/advisories/GHSA-cr4g-f395-h25h
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2026-164477.3 HIG—
——0A vulnerability has been found in D-Link DNS-320 1.0.2. Impacted is an unknown function of the file /web/jquery/uploader/multi_uploadify.php. The manipulation of the argument Filedata[] leads to unrestricted upload. Remote exploitation of the attack is possible. The exploit has been disclosed to the public and may be used.2hCVE-2026-163327.3 HIG41.9%
——13A vulnerability was detected in D-Link DNS-320 1.0.2. This impacts an unknown function of the file /mydlink/multi_uploadify.php. Performing a manipulation of the argument Filedata[] results in unrestricted upload. The attack is possible to be carried out remotely. The exploit is now public and may be used.13hCVE-2026-163317.3 HIG50.2%
——15A security vulnerability has been detected in D-Link DNS-320 1.0.2. This affects an unknown function of the file /web/function/save_ajax.php. Such manipulation of the argument Malicious Handler leads to unrestricted upload. The attack can be executed remotely. The exploit has been disclosed publicly and may be used.15hCVE-2026-163307.3 HIG50.2%
——15A weakness has been identified in D-Link DNS-320 1.0.2. The impacted element is an unknown function of the file /web/jquery/uploader/uploadify.php. This manipulation of the argument https:/ucn9h68n9289.feishu.cn/wiki/JJcTwHz7aiKeq6kSItMcoeSUnMc?from=from_copylink causes unrestricted upload. Remote exploitation of the attack is possible. The exploit has been made available to the public and could be used for attacks.15hCVE-2026-163297.3 HIG41.9%
——13A vulnerability was identified in D-Link DNS-320 1.0.2. Impacted is an unknown function of the file /photo_center/php/uploadify.php. The manipulation of the argument Malicious Handler leads to unrestricted upload. The attack may be initiated remotely. The exploit is publicly available and might be used.15hCVE-2026-163277.3 HIG50.2%
——15A vulnerability was determined in D-Link DNS-320 1.0.2. This issue affects some unknown processing of the file /web/web_file/upload.php. Executing a manipulation of the argument File can lead to unrestricted upload. The attack can be launched remotely. The exploit has been publicly disclosed and may be utilized.3h