CVE-2026-58443: Gitea Legacy Csrf Protectorcve-2026-58443-gitea-legacy-csrf-protector
Use of legacy token-based CSRF protector detected. Token-based CSRF cookie mechanisms can be vulnerable to cross-origin token leakage or bypass. Use modern cross-origin header validation (CrossOriginProtection) instead.