Home / Aug 27, 2026 / Story
0
#4 The Hacker News general August 26, 2026 at 06:27 UTC

Critical Gitea RCE Actively Exploited as Reported Attack Drops Miner-Like Payload

By [email protected] (The Hacker News)

AI Summary

CISA confirmed active exploitation of CVE-2026-60004 (CVSS 9.8), a critical RCE vulnerability in Gitea that allows any user with ordinary repository write access to execute arbitrary shell commands. Gitea patched the flaw in version 1.27.1 released in late July, and at least one reported attack has dropped a miner-like payload. Organizations running self-hosted Gitea instances should patch immediately or isolate from public access.

Relevance score: 88.0/100

# More from August 27