#4
The Hacker News
general
August 26, 2026 at 06:27 UTC
Critical Gitea RCE Actively Exploited as Reported Attack Drops Miner-Like Payload
By [email protected] (The Hacker News)
AI Summary
CISA confirmed active exploitation of CVE-2026-60004 (CVSS 9.8), a critical RCE vulnerability in Gitea that allows any user with ordinary repository write access to execute arbitrary shell commands. Gitea patched the flaw in version 1.27.1 released in late July, and at least one reported attack has dropped a miner-like payload. Organizations running self-hosted Gitea instances should patch immediately or isolate from public access.
Relevance score: 88.0/100
Sponsored
Protect Your Business
Expert cybersecurity solutions to safeguard your organization from evolving threats.
Get Protected →