Gitea Actions artifact signed URL context confusion
This vulnerability affects Gitea Actions Artifacts V4 signed URL handling for UploadArtifact and DownloadArtifact.
An attacker able to run an Actions job could obtain a valid signed URL for their own artifact, rewrite selected context fields and make the unauthenticated endpoint operate in another task or repository context.
Score
9.6/10
Critical