logo

Critical Gitea Vulnerability CVE-2026-60004 Actively Exploited

ID: 96a018d6-d8a2-5b32-9e9b-a6b5ec24a80c

STIX ID: report--96a018d6-d8a2-5b32-9e9b-a6b5ec24a80c

Feed Name: ThreatCluster

Threat Score
78/100

Date Published: 2026-08-26

Date Updated: 2026-08-26

...
...

A critical Gitea remote code execution vulnerability (CVE-2026-60004) is being actively exploited to run arbitrary shell commands and install cryptocurrency miners on vulnerable, self-hosted instances; CISA added the issue to its KEV catalog and set a federal mitigation deadline (August 28, 2026), and Gitea released version 1.27.1 on July 27, 2026 to address the flaw. The report also references earlier exploitation of CVE-2026-20896 in July 2026.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.