Breaches  › Tech  › Gitea Gitea
high · tech · Disclosed Aug 25, 2026

Gitea Gitea

Gitea Code Injection Vulnerability — Gitea contains a code injection vulnerability that allows an attacker with repository write access to send a malicious patch to the diffpatch API endpoint to plant an executable Git h

Original Disclosure
https://nvd.nist.gov/vuln/detail/CVE-2026-60004
Read original
Severity
high
Sector
tech
Disclosure date
August 25, 2026
Indexed
1 day, 4 hours ago