SECURITYTHE HACKER NEWS
Critical Gitea RCE Actively Exploited as Reported Attack Drops Miner-Like Payload
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) warned of active exploitation efforts targeting Gitea. The critical security flaw is identified as CVE-2026-60004, which allows for remote code execution. This vulnerability permits an attacker with ordinary write access to a repository to execute arbitrary shell commands.
Mentioned
Related Signal
Adjacent reporting
- Researchers Discover Critical GitHub CVE-2026-3854 RCE Flaw Exploitable via Single Git Push
- GitHub RCE Vulnerability: CVE-2026-3854 Breakdown
- Critical Gitea Flaw Let Unauthenticated Attackers Read Server Files via Org-Mode Markup
- Gitea Vulnerability Exposes Private Container Images without Authentication