Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2022-27313

23
FAUCET Score

CVE-2022-27313 describes an arbitrary file deletion vulnerability in Gitea v1.16.3, allowing unauthenticated attackers to cause a Denial of Service (DoS) by deleting the application's configuration file. This high-severity vulnerability (CVSS 7.5) has a low attack complexity and requires no user interaction, making it easily exploitable. Despite its potential impact, there is currently no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage.

Impacted Technologies

VendorProductVersion(s)CPE
1.16.3CPE matchmatch criteria
cpe:2.3:a:gitea:gitea:1.16.3:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

7.5HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
HIGH
Exploitability Score
3.9
Impact Score
3.6
CvssVersion
3.1

Exploit Intelligence

EPSS Score
1.00%
Probability of exploitation in next 30 days
EPSS Percentile
59.2%
Percentile rank of EPSS score among Peer Group
As of 2026-07-28
Model: v2026.06.15
This CVE's current EPSS score of 0.0100 is in the 35th percentile among its peer group of 51,553 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (7)

audiobookshelfpatch availablevia llm_extracted
axispatch availablevia llm_extracted
extreme_networkspatch availablevia llm_extracted
freebsdpatch availablevia llm_extracted
github_advisorypatch availablevia nvd_reference
View patch
gopatch availablevia ghsa
Product: code.gitea.io/giteaFixed in: 1.16.4
trendmicropatch availablevia llm_extracted

Vendor Advisories (6)

goGHSA-g7p7-x6w7-w6qghigh

Arbitrary file deletion in gitea

May 4, 2022
trendmicrollm-trendmicro-072699abe81c28c5

DOS

axisllm-axis-6957a232cc9d4ecc

DOS

audiobookshelfllm-audiobookshelf-047357eecd9a2122

DOS

freebsdllm-freebsd-c32835588f15dcc2

DOS

extreme_networksllm-extreme_networks-247a2d8ef6101e49

DOS

References

github.com / go-gitea/gitea/pull/19072
PatchThird Party Advisory